π©πͺ
filstal.org
2026-04-30 17:02:29
(1 month ago)
Bad web bot: Spoofed/obsolete UA (Opera/8.65.(Windows 98; ur-IN) Presto/2.9.182 Version/11.00). Mass ...
show more
Bad web bot: Spoofed/obsolete UA (Opera/8.65.(Windows 98; ur-IN) Presto/2.9.182 Version/11.00). Mass-scanning WordPress plugin. Coordinated large-scale bot attack.
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-24 15:51:18
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 5.187.10.1 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 5.187.10.1 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 11:51:11.261646 2026] [security2:error] [pid 18942:tid 18948] [client 5.187.10.1:52836] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||digital4z.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "digital4z.com"] [uri "/wp-content/plugins/jetpack/3rd-party/WS_FTP.LOG"] [unique_id "aeuRb5mSCRSx0XzrbZ16rQAAAMM"], referer: https://digital4z.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
kosada.com
2026-04-21 19:14:28
(1 month ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
πΈπ¬
mypatricks
2026-04-11 21:22:05
(1 month ago)
5.187.10.1 | Port: 9296 | DNS: 5.187.10.1 2026-04-12T05:22:04+08:00 Asia/Tbilisi | FETCH Sproofing A ...
show more
5.187.10.1 | Port: 9296 | DNS: 5.187.10.1 2026-04-12T05:22:04+08:00 Asia/Tbilisi | FETCH Sproofing Activity Detetced. | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /?9cd8d8d8dabdfb=717&1752746538 | Ref: - | Country: GE/Georgia/+04:00 IP City: Tsikhisdziri 9ead0b660b46e4b4-OTP/Bucharest, Romania 1 hits/0 secs Robots 2
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
π©πͺ
HandyTreff.de
2026-04-11 17:36:24
(1 month ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -51.996 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -51.996 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/111.0.0.0 Sa
show less
Web App Attack
Bad Web Bot
π³π±
TCATERDSBE
2026-04-09 11:18:00
(1 month ago)
SQL Injection
SQL Injection
π«π·
MΓΆlkky
2026-04-08 07:43:46
(1 month ago)
DDOS Attack (by infected device ?)
Web App Attack
πΊπΈ
stechusa
2026-03-30 06:21:54
(2 months ago)
[Askari] | country=GE | Behavior: HTTP/1.1 over TLS, Targeting specific pages, Outdated browser, Con ...
show more
[Askari] | country=GE | Behavior: HTTP/1.1 over TLS, Targeting specific pages, Outdated browser, Concurrent page load during attack
show less
Bad Web Bot
DDoS Attack
πΊπΈ
stechusa
2026-03-30 06:21:54
(2 months ago)
ELEVATED_THREAT | country=GE | ASN=LLC Skytel | 14 IPs targeting /brand/satco-products-inc.html | Fa ...
show more
ELEVATED_THREAT | country=GE | ASN=LLC Skytel | 14 IPs targeting /brand/satco-products-inc.html | Facet request during elevated threat (facet_ratio=0.71, unique_ips=103) | HTTP/1.1 over TLS (elevated=True)
show less
Bad Web Bot
DDoS Attack
Anonymous
2026-03-03 17:08:24
(3 months ago)
[03/Mar/2026:17:08:23 +0000] - 406 406 - GET https secnews.physaphae.fr "/article.php?NoRedirect=&Id ...
show more
[03/Mar/2026:17:08:23 +0000] - 406 406 - GET https secnews.physaphae.fr "/article.php?NoRedirect=&IdArticle=3576792%27+AND+%2C%28%2F%2A%2150000SELECT%2A%2F2157%2F%2A%2150000FROM%2A%2F%28%2F%2A%2150000SELECT%2A%2FJSON_KEYS%28%28%2F%2A%2150000SELECT%2A%2F%2F%2A%2150000CONVERT%2A%2F%28%28%2F%2A%2150000SELECT%2A%2F%2F%2A%2150000CONCAT%2A%2F%28%2527~%2527%2C%28%2F%2A%2150000SELECT%2A%2F%28ELT%282157%3D2157%2C1%29%29%29%2C%2527~%2527%29%29%2F%2A%2A%2FUSING%2F%2A%2A%2Futf8%29%29%29%29x%29--+-" [Client 5.187.10.1] [Length 1838] [Gzip -] [Sent-to 192.168.1.192] "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "-"
...
show less
SQL Injection
π·πΈ
Smel
2026-02-12 02:45:46
(3 months ago)
MH/MP Probe, Scan, Hack -
Port Scan
Hacking
πΊπΈ
MPL
2026-02-11 20:44:19
(3 months ago)
tcp/8080
Port Scan
πΊπΈ
MPL
2026-02-11 20:44:19
(3 months ago)
tcp/8080 (2 or more attempts)
Port Scan
Anonymous
2026-02-10 15:01:30
(3 months ago)
Unauthorized connection attempt on Port 23
Port Scan
Hacking
Exploited Host
πΊπΈ
kosada.com
2026-02-09 17:04:51
(3 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot