๐บ๐ธ
TPI-Abuse
2026-09-18 13:49:59
(6 hours ago)
(mod_security) mod_security (id:210350) triggered by 45.115.114.165 (assigned-for-regional-consumer- ...
show more
(mod_security) mod_security (id:210350) triggered by 45.115.114.165 (assigned-for-regional-consumer-asn55828.drikict.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 09:49:52.525520 2026] [security2:error] [pid 18678:tid 18678] [client 45.115.114.165:44454] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||biblecalligraphy.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "biblecalligraphy.com"] [uri "/"] [unique_id "aq1BgBZpXIhG2ephPLA_lwAAAAA"], referer: https://serprankchecker.website/dir/managed-link-building-23357
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:18:13
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 45.115.114.165 (assigned-for-regional-consumer- ...
show more
(mod_security) mod_security (id:210350) triggered by 45.115.114.165 (assigned-for-regional-consumer-asn55828.drikict.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:18:08.565998 2026] [security2:error] [pid 13983:tid 13983] [client 45.115.114.165:44548] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||specialtywebservice.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "specialtywebservice.com"] [uri "/"] [unique_id "aqmZ8BYJizTFXLE7fTh0uQAAABA"], referer: https://25986.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-09-07 05:20:25
(1 week ago)
Repeated requests classified as pathological web bot behavior, for example: /[redacted]/search?f%5B0 ...
show more
Repeated requests classified as pathological web bot behavior, for example: /[redacted]/search?f%5B0%5D=digest_key_terms%3A309&f%5B1%5D=digest_key_terms%3A322&f%5B2%5D=digest_publication_type%3A927&field_article_edition%5B504%5D=504&field_key_terms%5B321%5D=321&page=2 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36")
show less
DDoS Attack
Bad Web Bot
Anonymous
2026-09-06 16:46:52
(1 week ago)
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show more
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in printer-friendly.asp
show less
Exploited Host
Bad Web Bot
๐ฉ๐ช
pltcldvlpr
2026-08-31 05:04:11
(2 weeks ago)
Bogus Useragent: 45.115.114.165 - - [31/Aug/2026:07:04:11 +0200] "GET /protocol?id=st_4_29¶graph ...
show more
Bogus Useragent: 45.115.114.165 - - [31/Aug/2026:07:04:11 +0200] "GET /protocol?id=st_4_29¶graph=14278260&seq=1223 HTTP/1.1" 444 0 "-" "Opera/8.36.(Windows NT 4.0; nhn-MX) Presto/2.9.188 Version/11.00" asn=55828 org="Drik ICT Ltd" country=BD
...
show less
Bad Web Bot
๐บ๐ธ
kosada.com
2026-08-25 17:25:01
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-08-23 09:05:18
(3 weeks ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ธ๐ฌ
mypatricks
2026-01-28 16:25:20
(7 months ago)
45.115.114.165 | Port: 13327 | DNS: assigned-for-regional-consumer-asn55828.drikict.net 2026-01-29T0 ...
show more
45.115.114.165 | Port: 13327 | DNS: assigned-for-regional-consumer-asn55828.drikict.net 2026-01-29T00:25:19+08:00 Asia/Dhaka | Credential Forgery | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /?route=common/currency/currency&redirect=%2F%2Fxxxxxx%2Fcakestore%2Fcart%2F%3F1594640042%3D | Ref: - | Country: BD/Bangladesh/+06:00 IP City: Nagar Naluฤkot 9c51d851413808b8-HKG/Hong Kong 1 hits/0 secs Robots 2
show less
Web Spam
Blog Spam
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
vtchost.com
2026-01-16 14:11:23
(8 months ago)
HTTP honeypot triggered - ignoring robots.txt \| potential virus infected client or botnet
...
Bad Web Bot
Exploited Host
๐จ๐ญ
backslash
2026-01-08 15:45:20
(8 months ago)
block ruleset DA4A07AEE48B136A3922182BE8AA8BFBC1840803
Bad Web Bot
๐ฎ๐น
VHosting
2025-12-23 18:20:25
(8 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐จ๐ฆ
polycoda
2025-12-02 12:52:06
(9 months ago)
๐ฅถ Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
DDoS Attack
Anonymous
2025-11-25 15:01:12
(9 months ago)
scanning http requests from known botnet
Web App Attack
Anonymous
2025-11-18 18:47:56
(10 months ago)
scanning http requests from known botnet
Web App Attack
Anonymous
2025-11-14 15:00:15
(10 months ago)
scanning http requests from known botnet
Web App Attack