|
๐จ๐ญ
backslash
|
|
block ruleset A5EE6C8F745F0934168261886A3817E5C386412A
|
Bad Web Bot
|
|
|
๐ฉ๐ช
EGP Abuse Dept
|
|
Scanning for port/service exploits on tpc-036.mach3builders.nl
|
Port Scan
Hacking
|
|
|
๐บ๐ธ
stechusa
|
|
[Askari] ELEVATED_THREAT | 345 IPs targeting /brand.html | URL template shared by 129 IPs: /brand.ht ...
show more
[Askari] ELEVATED_THREAT | 345 IPs targeting /brand.html | URL template shared by 129 IPs: /brand.html?bulb_shape=*&bulb_shape_type=*&bulb_type=*&mode=list&p=* | Facet request during elevated threat (facet_ratio=0.94, unique_ips=579) | Signals: path_concentration, concurrent_facet_load, outdated_user_agent, facet_param_template, http1_on_tls
show less
|
Web App Attack
Hacking
Web Spam
|
|
|
๐บ๐ธ
stechusa
|
|
ELEVATED_THREAT | 345 IPs targeting /brand.html | URL template shared by 129 IPs: /brand.html?bulb_s ...
show more
ELEVATED_THREAT | 345 IPs targeting /brand.html | URL template shared by 129 IPs: /brand.html?bulb_shape=*&bulb_shape_type=*&bulb_type=*&mode=list&p=* | Facet request during elevated threat (facet_ratio=0.94, unique_ips=579)
show less
|
Web App Attack
Hacking
Web Spam
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.172.110.197 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.172.110.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 31 00:39:57.672728 2025] [security2:error] [pid 228600:tid 228600] [client 45.172.110.197:35156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asociacioncopan.org"] [uri "/wp-config.php."] [unique_id "aVS3LVgpzApwE_2jp9BdGAAAAA0"], referer: http://asociacioncopan.org/wp-config.php.
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฎ๐ฉ
hermawan
|
|
[Wed Dec 24 17:44:59.585456 2025] [security2:error] [pid 36305:tid 140300302317248] [client 45.172.1 ...
show more
[Wed Dec 24 17:44:59.585456 2025] [security2:error] [pid 36305:tid 140300302317248] [client 45.172.110.197:35072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Brave" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "253"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Brave found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_6) AppleWebKit/537.36 (KHTML, like Gecko) Brave Chrome/88.0.4324.152 Safari/537.36 request_line = GET /index.php/profil/meteorologi/list-all-categories/4218-klimatologi/prakiraan-klimatologi/prakiraan-dasarian/prakiraan-curah-hujan-dasarian/prakiraan-deterministik-curah-hujan-dasarian/prakiraan-deterministik-curah-hujan-dasarian-provinsi-jawa-timur/prakiraan-dasarian-deterministik-curah-hujan-provins..."] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/profil/meteorologi/list-all-categ
...
show less
|
Hacking
Web App Attack
|
|
|
๐ฉ๐ช
SMARTNET
|
|
Aisuru(Mirai variant) DDoS
|
DDoS Attack
|
|
|
Anonymous
|
|
scanning http requests from known botnet
|
Web App Attack
|
|
|
Anonymous
|
|
scanning http requests from known botnet
|
Web App Attack
|
|
|
Anonymous
|
|
scanning http requests from known botnet
|
Web App Attack
|
|