๐ณ๐ฑ
xyz.rip
2025-11-11 11:23:43
(10 months ago)
Mutliple rate-limit violations...
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Roderic
2025-11-11 05:00:46
(10 months ago)
54.227.39.236 (US/United States/Virginia/Ashburn/ec2-54-227-39-236.compute-1.amazonaws.com/[redacted ...
show more
54.227.39.236 (US/United States/Virginia/Ashburn/ec2-54-227-39-236.compute-1.amazonaws.com/[redacted]), more than 30 Apache 403 hits
show less
Hacking
๐ฉ๐ช
DocNetzwerk
2025-11-10 23:15:59
(10 months ago)
54.227.39.236 (US/United States/ec2-54-227-39-236.compute-1.amazonaws.com), more than 7 Apache 403 h ...
show more
54.227.39.236 (US/United States/ec2-54-227-39-236.compute-1.amazonaws.com), more than 7 Apache 403 hits
show less
Hacking
๐บ๐ธ
bazter.pro
2025-11-10 23:03:45
(10 months ago)
Banned by nginx-ip-monitor. AbuseIPDB confidence: 70%; Datacenter IP: Data Center/Web Hosting/Transi ...
show more
Banned by nginx-ip-monitor. AbuseIPDB confidence: 70%; Datacenter IP: Data Center/Web Hosting/Transit; Many unique paths: 5. Total requests: 7. 404 errors: 0. Unique paths: 5.
show less
Web App Attack
๐ซ๐ท
bigorre.org
2025-11-08 09:53:38
(10 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ณ๐ฑ
xyz.rip
2025-11-08 06:47:35
(10 months ago)
Mutliple rate-limit violations...
Bad Web Bot
Web App Attack
Anonymous
2025-11-06 21:18:57
(10 months ago)
06-11-2025 22:18:57.11 ERROR util.AccessViolations - 54.227.39.236 report to fail2ban - action: bloc ...
show more
06-11-2025 22:18:57.11 ERROR util.AccessViolations - 54.227.39.236 report to fail2ban - action: block
...
show less
Hacking
Brute-Force
Bad Web Bot
Anonymous
2025-11-06 05:51:29
(10 months ago)
PSCDE WEBFORM SPAM 54.227.39.236 (ec2-54-227-39-236.compute-1.amazonaws.com)
Web Spam
๐ณ๐ฑ
Site.eu
2025-11-06 03:56:13
(10 months ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-04 08:22:01
(10 months ago)
(mod_security) mod_security (id:210381) triggered by 54.227.39.236 (ec2-54-227-39-236.compute-1.amaz ...
show more
(mod_security) mod_security (id:210381) triggered by 54.227.39.236 (ec2-54-227-39-236.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 04 03:21:57.104198 2025] [security2:error] [pid 5246:tid 5246] [client 54.227.39.236:56182] ModSecurity: Access denied with code 403 (phase 2). Invalid URL Encoding: Non-hexadecimal digits used at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "82"] [id "210381"] [rev "6"] [msg "COMODO WAF: URL Encoding Abuse Attack Attempt||www.sandwcreations.com|F|4"] [data "REQUEST_URI=/%1$s"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.sandwcreations.com"] [uri "/%1$s"] [unique_id "aQm3pUjl3rESF_NbNb9hrwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-04 01:38:31
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 54.227.39.236 (ec2-54-227-39-236.compute-1.amaz ...
show more
(mod_security) mod_security (id:210730) triggered by 54.227.39.236 (ec2-54-227-39-236.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 20:38:26.394565 2025] [security2:error] [pid 914:tid 914] [client 54.227.39.236:55366] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.solcargomiami.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.solcargomiami.com"] [uri "/mailto@[email protected] "] [unique_id "aQlZElZIwnFEIoJjyh2D0gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
rsa
2025-11-03 18:28:00
(10 months ago)
excessive crawling
DDoS Attack
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-03 17:08:12
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 54.227.39.236 (ec2-54-227-39-236.compute-1.amaz ...
show more
(mod_security) mod_security (id:210730) triggered by 54.227.39.236 (ec2-54-227-39-236.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 12:08:06.041382 2025] [security2:error] [pid 19352:tid 19352] [client 54.227.39.236:55998] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.photojeniq.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.photojeniq.com"] [uri "/photovelvet/Thumbs.db"] [unique_id "aQjhdu1fJfXoCTx-mLh2gAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
xyz.rip
2025-11-03 04:19:27
(10 months ago)
Mutliple rate-limit violations...
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2025-11-03 02:05:10
(10 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack