๐ซ๐ท
Tilellit.PRO
2026-07-27 08:47:11
(1 day ago)
WooCommerce YITH AJAX Filder product_cat filter flood attempt with taxonomies
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2026-07-26 20:09:06
(1 day ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2026-06-29 16:26:57
(4 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฉ๐ช
Vegascosmetics
2026-06-20 13:09:58
(1 month ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐บ๐ธ
gui-ying233
2026-06-12 00:01:23
(1 month ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 Edg/144.0.0.0
show less
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-05-11 10:36:10
(2 months ago)
[Mon May 11 17:31:36.982556 2026] [security2:error] [pid 5095:tid 140116040292032] [client 45.171.22 ...
show more
[Mon May 11 17:31:36.982556 2026] [security2:error] [pid 5095:tid 140116040292032] [client 45.171.221.91:53014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "image/heif" at REQUEST_HEADERS:Accept. [file "/etc/modsecurity/coreruleset-4.25.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "463"] [id "440009"] [msg " Image Heif"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: text/html found within REQUEST_HEADERS:Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/heif,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7 request_line = GET /index.php/profil/meteorologi/list-of-all-tags/analisis-bulanan-tingkat-ketersediaan-air-bagi-tanaman-di-provinsi-jawa-timur-tahun-2022 HTTP/2.0 Request URI RAW = /index.php/profil/meteorolo..."] [hostname "staklim-malang.info"] [uri "/index.php/profil/meteorologi/list-of-all-tags/analisis-bulanan-tingkat-ketersediaan
...
show less
Email Spam
Hacking
๐ฉ๐ช
filstal.org
2026-03-26 20:42:49
(4 months ago)
Dovecot Brute-Force: Targeted User-Enumeration (Honey-Accounts)
Email Spam
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-03-18 15:19:07
(4 months ago)
(mod_security) mod_security (id:218580) triggered by 45.171.221.91 (rn05-91-access.fibra.aconcagua.o ...
show more
(mod_security) mod_security (id:218580) triggered by 45.171.221.91 (rn05-91-access.fibra.aconcagua.optiwisp.cl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 18 11:19:00.495873 2026] [security2:error] [pid 5973:tid 5973] [client 45.171.221.91:37930] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:\\\\/\\\\*[!+](?:[\\\\w\\\\s=_\\\\-()]+)?\\\\*\\\\/)" at ARGS:product_id. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "76"] [id "218580"] [rev "1"] [msg "COMODO WAF: MySQL in-line comment detected.||www.mooseled.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "www.mooseled.com"] [uri "/moose"] [unique_id "abrCZGpe2e5-zTk-DIDHfgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TTWebhosting
2026-03-05 20:35:06
(4 months ago)
(imapd) Failed IMAP login from 45.171.221.91 (CL/Chile/Regiรณn de Valparaรญso/Los Andes/rn05-91-access ...
show more
(imapd) Failed IMAP login from 45.171.221.91 (CL/Chile/Regiรณn de Valparaรญso/Los Andes/rn05-91-access.fibra.aconcagua.optiwisp.cl/[AS267776 OPTIWISP SPA]): 1 in the last 3600 secs
show less
Brute-Force
Port Scan
Hacking
Anonymous
2026-03-04 21:48:18
(4 months ago)
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show more
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in email-link.asp
show less
Exploited Host
Bad Web Bot
๐ฎ๐ฉ
hermawan
2025-09-26 15:23:37
(10 months ago)
[Fri Sep 26 22:06:05.228079 2025] [security2:error] [pid 986921:tid 140708161779392] [client 45.171. ...
show more
[Fri Sep 26 22:06:05.228079 2025] [security2:error] [pid 986921:tid 140708161779392] [client 45.171.221.91:51261] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Sogou" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.16.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "228"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Sogou found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Linux; Android 9; MI 9 Build/PKQ1.181121.001; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/55.0.3842.109 Mobile Safari/537.36 AWP/2.0 SogouMSE,SogouMobileBrowser/5.22.4 request_line = GET /index.php/prakiraan-iklim/prakiraan-bulanan/daerah-potensi-banjir-di-provinsi-jawa-timur/555561610-prakiraan-bulanan-daerah-potensi-banjir-di-provinsi-jawa-timur-untuk-bulan-februari-tahun-2025-update-10-desember-2024 HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prakiraan-iklim/prakiraan-bulanan/
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
exxos
2025-09-01 10:05:20
(10 months ago)
Attacks with Bad user agents
Hacking
๐ณ๐ฑ
exxos
2025-08-26 23:03:01
(11 months ago)
http-no-verb
Hacking
๐ซ๐ท
bigorre.org
2025-07-30 13:52:36
(11 months ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
๐ณ๐ฑ
exxos
2025-07-30 01:31:10
(11 months ago)
http-no-verb
Hacking