๐ฉ๐ช
EinfxchFinn
2026-06-16 11:25:33
(2 days ago)
Unauthorized connection attempt to port 35968 from 45.174.239.58
Port Scan
Anonymous
2026-06-15 20:45:29
(3 days ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐ฎ๐ฉ
hermawan
2026-05-31 08:03:07
(2 weeks ago)
[Sun May 31 15:03:04.242768 2026] [security2:error] [pid 978059:tid 140573652006592] [client 45.174. ...
show more
[Sun May 31 15:03:04.242768 2026] [security2:error] [pid 978059:tid 140573652006592] [client 45.174.239.58:3117] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "image/heif" at REQUEST_HEADERS:Accept. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "422"] [id "440009"] [msg " Image Heif"] [data " Matched Data ARGS charset: - Matched Data TX.1: found within Content-Type multipart form Matched Data: text/html found within REQUEST_HEADERS:Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/heif,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7 request_line = GET /index.php/analisis-iklim/analisis-bulanan/indeks-presipitasi-terstandarisasi-spi-3-bulanan/555562560-analisis-bulanan-indeks-kekeringan-dan-kebasahan-meteorologis-3-bulanan-untuk-bulan-agus..."] [hostname "staklim-malang.info"] [uri "/index.php/analisis-iklim/analisis-bulanan/indeks-presipitasi-terstandarisasi-spi-3
...
show less
Email Spam
Hacking
๐ฎ๐ฉ
hermawan
2026-05-21 02:49:28
(4 weeks ago)
[Thu May 21 09:49:27.601729 2026] [security2:error] [pid 522355:tid 139813664573120] [client 45.174. ...
show more
[Thu May 21 09:49:27.601729 2026] [security2:error] [pid 522355:tid 139813664573120] [client 45.174.239.58:13183] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.baidu.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "624"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.baidu.go.id found within REQUEST_HEADERS:Referer: http://www.baidu.go.id/ request_line = GET / HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/"] [unique_id "ag5yt3Ql7gkUNfqPD10IKAACRgI"], referer http://www.baidu.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[522358] [J2ri9crzCgs] [ag5yt3Ql7gkUNfqPD10IKAACRgI] keep_alive=[1] [2026-05-21 09:49:27.601734] [R:ag5yt3Ql7gkUNfqPD10IKAACRgI] UA:'Mozilla/5.0 (Linux; Android 14; Pixel 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.6261.119 Mobile Safari/537.36 OPR/81.2.4292.78581' Host:'staklim-jatim.bmkg
...
show less
Email Spam
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-08 17:06:05
(4 months ago)
(mod_security) mod_security (id:217210) triggered by 45.174.239.58 (45.174.239.58.viutelecom.com.br) ...
show more
(mod_security) mod_security (id:217210) triggered by 45.174.239.58 (45.174.239.58.viutelecom.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 08 12:05:59.985913 2026] [security2:error] [pid 3879063:tid 3879063] [client 45.174.239.58:2284] ModSecurity: Access denied with code 403 (phase 2). Match of "rx ^(?i:(?:[a-z]{3,10}\\\\s+(?:\\\\w{3,7}?://[\\\\w\\\\-\\\\./]*(?::\\\\d+)?)?/[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?|connect (?:\\\\d{1,3}\\\\.){3}\\\\d{1,3}\\\\.?(?::\\\\d+)?|options \\\\*)\\\\s+[\\\\w\\\\./]+|get /[^?#]*(?:\\\\?[^#\\\\s]*)?(?:#[\\\\S]*)?)$" against "REQUEST_LINE" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "114"] [id "217210"] [rev "1"] [msg "COMODO WAF: Invalid HTTP Request Line||usa7authors.top|F|4"] [data "GET http://usa7authors.top HTTP/1.1"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "usa7authors.top"] [uri "/"] [unique_id "aYjCd_dZy2nrI0gBBPc8xAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
HandyTreff.de
2026-02-03 17:06:33
(4 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -53.21 (Bad < -10 / Very Bad < -20 / ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -53.21 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.6943.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2025-12-16 23:26:33
(6 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
Anonymous
2025-11-23 09:09:44
(6 months ago)
scanning http requests from known botnet
Web App Attack
๐ซ๐ท
bigorre.org
2025-10-31 10:31:59
(7 months ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
๐ฏ๐ต
VXG-NET
2025-08-29 07:13:04
(9 months ago)
port=80, indicator_type=insecure-credentials
Brute-Force
๐ณ๐ฑ
exxos
2025-08-22 20:03:01
(9 months ago)
Attacks with Bad user agents
Hacking
๐ณ๐ฑ
exxos
2025-08-20 22:03:01
(9 months ago)
Attacks with Bad user agents
Hacking
๐ณ๐ฑ
exxos
2025-08-20 01:03:01
(9 months ago)
http-no-verb
Hacking
๐ณ๐ฑ
exxos
2025-07-30 01:42:35
(10 months ago)
HTTP1.x attacks
DDoS Attack
๐ณ๐ฑ
exxos
2025-07-27 22:24:40
(10 months ago)
web exploit attacks
Web App Attack