π¨π΄
j458rjqwi348fhjq46
2025-08-06 20:18:03
(1 year ago)
Malicious IP detected by WAF with anomaly score 11.0. Attack types: Timestamp deviates by 1.6 hours, ...
show more
Malicious IP detected by WAF with anomaly score 11.0. Attack types: Timestamp deviates by 1.6 hours, Timestamp deviates by 3.2 hours, Timestamp deviates by 5.0 hours (+7 more). Activity: 16871 requests to 50 URLs. Period: 2025-08-06 14:47:06 - 2025-08-06 14:47:03 (America/Bogota). Origin: US. Source: Automated WAF log analysis.
show less
Hacking
Web App Attack
Anonymous
2025-07-23 01:45:53
(1 year ago)
52.176.2.235 - - [23/Jul/2025:01:45:52 +0000] "GET /license/ HTTP/1.1" 403 193 "-" "Mozilla/5.0 (Wi ...
show more
52.176.2.235 - - [23/Jul/2025:01:45:52 +0000] "GET /license/ HTTP/1.1" 403 193 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.7204.97 Safari/537.36" "TLSv1.3" "TLS_AES_128_GCM_SHA256"
52.176.2.235 - - [23/Jul/2025:01:45:52 +0000] "GET / HTTP/1.1" 403 193 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.7204.97 Safari/537.36" "TLSv1.3" "TLS_AES_128_GCM_SHA256"
52.176.2.235 - - [23/Jul/2025:01:45:52 +0000] "GET /project/ HTTP/1.1" 403 193 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.7204.97 Safari/537.36" "TLSv1.3" "TLS_AES_128_GCM_SHA256"
52.176.2.235 - - [23/Jul/2025:01:45:52 +0000] "GET /underconstruction/ HTTP/1.1" 403 193 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.7204.97 Safari/537.36" "TLSv1.3" "TLS_AES_128_GCM_SHA256"
52.176.2.235 - - [23/Jul/2025:01:45:52 +0000] "GET
...
show less
Brute-Force
SSH
π¨π΄
j458rjqwi348fhjq46
2025-07-22 20:04:11
(1 year ago)
Malicious IP detected by WAF with anomaly score 11.0. Attack types: Suspicious short random path, Ex ...
show more
Malicious IP detected by WAF with anomaly score 11.0. Attack types: Suspicious short random path, Exposure of ASPX page, Exposure of environment file (.env) (+1 more). Activity: 2134 requests to 491 URLs. Period: 2025-07-19 09:43:36 - 2025-07-19 09:43:36 (America/Bogota). Origin: US. Source: Automated WAF log analysis.
show less
Hacking
Web App Attack
π¦πΊ
MAGIC
2025-07-22 01:10:22
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-07-08 17:33:59
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 52.176.2.235 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 52.176.2.235 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 08 13:33:53.034401 2025] [security2:error] [pid 10053:tid 10053] [client 52.176.2.235:4096] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||web142.dnchosting.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "web142.dnchosting.com"] [uri "/mailman/options/hardmanfamily_coolestfamilyever.com"] [unique_id "aG1WgUyLaobw3mYwi_WYpgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
ISPLtd
2025-07-05 01:05:35
(1 year ago)
52.176.2.235 - /wp-includes/blocks/navigation/style.min.css [04/Jul/2025:22:05:34 -0300] "GET /wp-in ...
show more
52.176.2.235 - /wp-includes/blocks/navigation/style.min.css [04/Jul/2025:22:05:34 -0300] "GET /wp-includes/blocks/navigation/style.min.css?ver=6.8.1
52.176.2.235 - /wp-includes/blocks/image/style.min.css [04/Jul/2025:22:05:34 -0300] "GET /wp-includes/blocks/image/style.min.css?ver=6.8.1
...
show less
Hacking
Web App Attack
Anonymous
2025-06-27 15:18:40
(1 year ago)
Web App Attack
πͺπ¨
Kelly Abatte
2025-06-05 16:27:05
(1 year ago)
Suspicious activity
Brute-Force
π¦πΊ
MAGIC
2025-06-03 11:06:44
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π¦πΊ
MAGIC
2025-05-29 04:00:56
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-05-27 08:02:21
(1 year ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2025-05-23 17:06:32
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
πΊπΈ
Rip
2025-05-21 21:26:18
(1 year ago)
Automated reconnaissance attempt targeting restricted or sensitive paths.
...
Brute-Force
Web App Attack
π¦πΊ
MAGIC
2025-05-19 02:05:10
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π³π±
sabrinagoom
2025-05-12 17:59:20
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 8075 (MICROSOFT-CORP-MSN ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 8075 (MICROSOFT-CORP-MSN-AS-BLOCK)
Protocol: HTTP/3 (GET method)
Endpoint: /cdn-cgi/speculation
Timestamp: 2025-05-12T15:30:16Z
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot