🇮🇩
David Koswari
2026-07-27 05:33:00
(1 month ago)
REQ_BLOCKED_SECURITY
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
🇺🇸
TheJimmo
2026-07-16 03:52:40
(1 month ago)
65.55.210.203 65.55.210.203 - - [16/Jul/2026:03:52:39 +0000] "GET /index.php?app=core&module=system& ...
show more
65.55.210.203 65.55.210.203 - - [16/Jul/2026:03:52:39 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=64fb9658a8a917e94c409893ee14fab9&attachIDs%5B53130%5D=true&attachIDs%5B53131%5D=true&attachIDs%5B53132%5D=true&attachIDs%5B53133%5D=true&attachIDs%5B53134%5D=true&attachIDs%5B53135%5D=true&attachIDs%5B53136%5D=true&attachIDs%5B53137%5D=true&attachIDs%5B53138%5D=true&attachIDs%5B53139%5D=true&attachIDs%5B53140%5D=true&attachIDs%5B53141%5D=true&attachIDs%5B53142%5D=true HTTP/1.1" 403 61 "https://foreverpontiac.com/forums/topic/23505-hot-rod-power-tour-2026/page/2" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36"
65.55.210.203 65.55.210.203 - - [16/Jul/2026:03:52:39 +0000] "GET /index.php?app=core&module=system&controller=ajax&do=attachmentInfo&csrfKey=64fb9658a8a917e94c409893ee14fab9&attachIDs%5B53919%5D=true&attachIDs%5B53920%5D=true&attachIDs%5B53921%5D=
...
show less
Bad Web Bot
Web App Attack
🇬🇷
setupgr
2026-06-20 19:59:58
(2 months ago)
(mod_security) mod_security (id:11000010) triggered by 65.55.210.203 (US/United States/Washington/Qu ...
show more
(mod_security) mod_security (id:11000010) triggered by 65.55.210.203 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 22:59:54.819163 2026] [security2:error] [pid 2277:tid 2292] [remote 65.55.210.203:20103] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/uploads/elementor/google-fonts/css/jura.css"] [unique_id "ajbxOlVjV5VR3hAZ4rls7gAAUAE"], referer: https://ftiaxtomonosou.gr/%CE%BF%CE%B9%CE%BA%CE%BF%CE%B4%CE%BF%CE%BC%CE%B9%CE%BA%CE%AE-%CE%BE%CF%85%CE%BB%CE%B5%CE%AF%CE%B1/
show less
Port Scan
🇫🇮
YF
2026-06-17 07:00:50
(2 months ago)
WordPress content enumeration
Web App Attack
🇬🇷
setupgr
2026-06-13 02:48:00
(2 months ago)
(mod_security) mod_security (id:11000010) triggered by 65.55.210.203: 1 in the last 86400 secs; Port ...
show more
(mod_security) mod_security (id:11000010) triggered by 65.55.210.203: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 13 05:47:55.686045 2026] [security2:error] [pid 568460:tid 568478] [remote 65.55.210.203:11651] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/uploads/premium-addons-elementor/pafe-20310.js"] [unique_id "aizE27u4Tums_lWs3bXvlwAABA8"], referer: https://ftiaxtomonosou.gr/%CF%80%CE%B1%CF%84%CF%8E%CE%BC%CE%B1%CF%84%CE%B1/
show less
Port Scan
🇦🇺
MAGIC
2026-05-16 00:08:25
(3 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2026-05-14 05:12:05
(3 months ago)
65.55.210.203 - - [14/May/2026:05:12:03 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://t ...
show more
65.55.210.203 - - [14/May/2026:05:12:03 +0000] "GET /svg/moon-phase-7.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
65.55.210.203 - - [14/May/2026:05:12:03 +0000] "GET /svg/moon-phase-6.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
65.55.210.203 - - [14/May/2026:05:12:04 +0000] "GET /svg/moon-phase-5.svg HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
🇨🇳
ThreatBook.io
2026-04-11 22:14:20
(4 months ago)
ThreatBook Intelligence: Search Engine Crawler,Whitelist more details on https://threatbook.io/ip/65 ...
show more
ThreatBook Intelligence: Search Engine Crawler,Whitelist more details on https://threatbook.io/ip/65.55.210.203
2026-04-11 03:31:16 /cgi-bin/loginTheme/theme1/login-max-height-768.css?r=wall&1648090673
show less
Web App Attack
🇦🇺
Anytech
2026-04-02 14:23:43
(5 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
🇩🇪
FeG Deutschland
2025-11-19 18:49:05
(9 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
Exploited Host
Web App Attack
🇦🇺
MAGIC
2025-10-21 03:05:41
(10 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇩🇪
FeG Deutschland
2025-10-19 13:28:30
(10 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 248
Exploited Host
Web App Attack
🇩🇪
FeG Deutschland
2025-10-18 14:40:25
(10 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
Exploited Host
Web App Attack
🇮🇹
Progetto1
2025-09-24 13:44:03
(11 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2025-09-19 16:16:51
(11 months ago)
(mod_security) mod_security (id:243420) triggered by 65.55.210.203 (msnbot-65-55-210-203.search.msn. ...
show more
(mod_security) mod_security (id:243420) triggered by 65.55.210.203 (msnbot-65-55-210-203.search.msn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 19 12:16:43.022453 2025] [security2:error] [pid 2006696:tid 2006703] [client 65.55.210.203:52608] ModSecurity: Access denied with code 403 (phase 3). Match of "validateByteRange 0-31" against "REQUEST_HEADERS:Accept-Encoding" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6640"] [id "243420"] [rev "4"] [msg "COMODO WAF: Information disclosure vulnerability in Eclipse Jetty before 9.2.9.v20150224 (CVE-2015-2080)||www.vivierae.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.vivierae.com"] [uri "/wp-admin/admin-ajax.php"] [unique_id "aM2Bx-g19d8yXksv2i06BQAAAQA"]
show less
Brute-Force
Bad Web Bot
Web App Attack