|
๐ซ๐ฎ
Jordy
|
|
06/Jan/2026:21:08:22.704077 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
06/Jan/2026:21:08:22.704077 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.226.70.57] ModSecurity: Warning. Pattern match "(?i)\\\\\\\\b(?:s(?:e(?:t(?:_(?:e(?:xception|rror)_handler|magic_quotes_runtime|include_path)|defaultstub)|ssion_s(?:et_save_handler|tart))|qlite_(?:(?:(?:unbuffered|single|array)_)?query|create_(?:aggregate|function)|p?open|exec)|tr(?:eam_(?:context_create| ..." at ARGS:0. [file "/usr/share/modsecurity-crs/rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "349"] [id "933160"] [msg "PHP Injection Attack: High-Risk PHP Function Call Found"] [data "Matched Data: eval(user_code); Promise.resolve(val).then(function(v) { var res_str = (typeof v === 'object') ? JSON.stringify(v) : String(v); try { res_str = zlib.deflateSync(res_str); } catch(e) {} var res_hex = global[String.fromCharCode(66,117,102,102,101,114)].from(res_str).toString('hex'); reject(Object.assign(new Er
...
show less
|
Web App Attack
|
|
|
๐ฉ๐ช
hbrks
|
|
1 attack(s) detected, such as these: {"event":"web_block","ip":"64.226.70.57","host":"sn.estate.kasm ...
show more
1 attack(s) detected, such as these: {"event":"web_block","ip":"64.226.70.57","host":"sn.estate.kasm.life","request":"POST / HTTP/1.1","user_agent":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36","reason":"service:unknow","timestamp":"2026-01-06T12:14:45 00:00","logentry":"sn.estate.kasm.life 64.226.70.57 - - [06/Jan/2026:12:14:45 0000] POST / HTTP/1.1 444 0 - Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36 - matched:service:unknow"} * Report Details *: https://p4u.xyz/PIK0EHX9EY5/1* IP Details *: https://p4u.xyz/PIK0EHX9EY5/2
show less
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐ณ๐ฑ
Jordy
|
|
06/Jan/2026:11:02:40.638163 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
06/Jan/2026:11:02:40.638163 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.226.70.57] ModSecurity: Warning. Pattern match "(?i)\\\\\\\\b(?:s(?:e(?:t(?:_(?:e(?:xception|rror)_handler|magic_quotes_runtime|include_path)|defaultstub)|ssion_s(?:et_save_handler|tart))|qlite_(?:(?:(?:unbuffered|single|array)_)?query|create_(?:aggregate|function)|p?open|exec)|tr(?:eam_(?:context_create| ..." at ARGS:0. [file "/usr/share/modsecurity-crs/rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "349"] [id "933160"] [msg "PHP Injection Attack: High-Risk PHP Function Call Found"] [data "Matched Data: eval(user_code); Promise.resolve(val).then(function(v) { var res_str = (typeof v === 'object') ? JSON.stringify(v) : String(v); try { res_str = zlib.deflateSync(res_str); } catch(e) {} var res_hex = global[String.fromCharCode(66,117,102,102,101,114)].from(res_str).toString('hex'); reject(Object.assign(new Er
...
show less
|
Web App Attack
|
|
|
๐ซ๐ท
GoodOldTOS
|
|
Highly suspect IP
|
Hacking
Web App Attack
|
|
|
๐ซ๐ฎ
Jordy
|
|
06/Jan/2026:09:17:30.295353 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
06/Jan/2026:09:17:30.295353 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.226.70.57] ModSecurity: Warning. Pattern match "(?i)\\\\\\\\b(?:s(?:e(?:t(?:_(?:e(?:xception|rror)_handler|magic_quotes_runtime|include_path)|defaultstub)|ssion_s(?:et_save_handler|tart))|qlite_(?:(?:(?:unbuffered|single|array)_)?query|create_(?:aggregate|function)|p?open|exec)|tr(?:eam_(?:context_create| ..." at ARGS:0. [file "/usr/share/modsecurity-crs/rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "349"] [id "933160"] [msg "PHP Injection Attack: High-Risk PHP Function Call Found"] [data "Matched Data: eval(user_code); Promise.resolve(val).then(function(v) { var res_str = (typeof v === 'object') ? JSON.stringify(v) : String(v); try { res_str = zlib.deflateSync(res_str); } catch(e) {} var res_hex = global[String.fromCharCode(66,117,102,102,101,114)].from(res_str).toString('hex'); reject(Object.assign(new Er
...
show less
|
Web App Attack
|
|
|
๐จ๐ฟ
ddw
|
|
ModSecurity detection - Rules: 949110(Inbound Anomaly Score Exceeded (Total Score: 55))
|
Web App Attack
|
|
|
๐ฆ๐น
services.org.pl
|
|
connect() failed (111: Connection refused) while connecting to upstream, client: 64.226.70.57, serve ...
show more
connect() failed (111: Connection refused) while connecting to upstream, client: 64.226.70.57, server: notebook.services.org.pl, request: "POST / HTTP/1.1", upstream: "http://127.0.0.1:24764/", host: "notebook.services.org.pl"
show less
|
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ฎ
Jordy
|
|
06/Jan/2026:05:19:52.441004 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
06/Jan/2026:05:19:52.441004 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.226.70.57] ModSecurity: Warning. Pattern match "(?i)\\\\\\\\b(?:s(?:e(?:t(?:_(?:e(?:xception|rror)_handler|magic_quotes_runtime|include_path)|defaultstub)|ssion_s(?:et_save_handler|tart))|qlite_(?:(?:(?:unbuffered|single|array)_)?query|create_(?:aggregate|function)|p?open|exec)|tr(?:eam_(?:context_create| ..." at ARGS:0. [file "/usr/share/modsecurity-crs/rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "349"] [id "933160"] [msg "PHP Injection Attack: High-Risk PHP Function Call Found"] [data "Matched Data: eval(user_code); Promise.resolve(val).then(function(v) { var res_str = (typeof v === 'object') ? JSON.stringify(v) : String(v); try { res_str = zlib.deflateSync(res_str); } catch(e) {} var res_hex = global[String.fromCharCode(66,117,102,102,101,114)].from(res_str).toString('hex'); reject(Object.assign(new Er
...
show less
|
Web App Attack
|
|
|
๐ซ๐ฎ
Jordy
|
|
06/Jan/2026:04:05:00.888027 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
06/Jan/2026:04:05:00.888027 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 64.226.70.57] ModSecurity: Warning. Pattern match "(?i)\\\\\\\\b(?:s(?:e(?:t(?:_(?:e(?:xception|rror)_handler|magic_quotes_runtime|include_path)|defaultstub)|ssion_s(?:et_save_handler|tart))|qlite_(?:(?:(?:unbuffered|single|array)_)?query|create_(?:aggregate|function)|p?open|exec)|tr(?:eam_(?:context_create| ..." at ARGS:0. [file "/usr/share/modsecurity-crs/rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "349"] [id "933160"] [msg "PHP Injection Attack: High-Risk PHP Function Call Found"] [data "Matched Data: eval(user_code); Promise.resolve(val).then(function(v) { var res_str = (typeof v === 'object') ? JSON.stringify(v) : String(v); try { res_str = zlib.deflateSync(res_str); } catch(e) {} var res_hex = global[String.fromCharCode(66,117,102,102,101,114)].from(res_str).toString('hex'); reject(Object.assign(new Er
...
show less
|
Web App Attack
|
|
|
๐ฉ๐ช
hbrks
|
|
2 attack(s) detected, such as these: {"event":"web_block","ip":"64.226.70.57","host":"gp.estate.kasm ...
show more
2 attack(s) detected, such as these: {"event":"web_block","ip":"64.226.70.57","host":"gp.estate.kasm.life","request":"POST / HTTP/1.1","user_agent":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36","reason":"service:unknow","timestamp":"2026-01-06T02:23:34 00:00","logentry":"gp.estate.kasm.life 64.226.70.57 - - [06/Jan/2026:02:23:34 0000] POST / HTTP/1.1 444 0 - Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36 - matched:service:unknow"} * Report Details *: https://p4u.xyz/AYQ5WABJFO0/1* IP Details *: https://p4u.xyz/AYQ5WABJFO0/2
show less
|
Web Spam
Hacking
Bad Web Bot
|
|
|
๐บ๐ธ
etu brutus
|
|
64.226.70.57 Blocked by [Attack Vector List]
...
|
Hacking
Brute-Force
Exploited Host
|
|
|
๐ฉ๐ช
bescared
|
|
F2B - Malicious activity detected. URL Probing.
|
Hacking
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
$f2bV_matches
|
Brute-Force
|
|
|
๐บ๐ธ
jcbriar
|
|
CSRF or other malfeasance
|
Hacking
Web App Attack
|
|
|
Anonymous
|
|
IP banned by Fail2Ban in jail nginx-abusive-ips
|
Brute-Force
Bad Web Bot
Web App Attack
|
|