๐ฌ๐ง
thetomtaylor.co.uk
2026-09-17 23:08:00
(1 week ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice01,ice02,wa01]
Hacking
SQL Injection
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-17 22:07:01
(1 week ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [wa02]
Hacking
SQL Injection
Web App Attack
๐ฎ๐ฉ
David Koswari
2026-07-20 05:10:00
(2 months ago)
REQ_BLOCKED_ACL
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
๐ฌ๐ท
setupgr
2026-06-20 13:11:38
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 16:11:36.150628 2026] [security2:error] [pid 202885:tid 202888] [remote 65.55.210.38:14340] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in sea-sound.com"] [severity "CRITICAL"] [hostname "sea-sound.com"] [uri "/wp-content/cache/min/1/wp-content/plugins/revslider/public/js/libs/tptools.js"] [unique_id "ajaRiErlp52aw72Tw8fpkQABBgI"], referer: https://sea-sound.com/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-18 20:16:24
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 18 23:16:20.434874 2026] [security2:error] [pid 3299730:tid 3299791] [remote 65.55.210.38:29080] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-27025.css"] [unique_id "ajRSFNddU2qNWNNK__VuWgAAgxQ"], referer: https://ftiaxtomonosou.gr/%CF%84%CF%8D%CF%80%CE%BF%CF%82_%CE%BD%CE%AD%CE%BF%CF%85/%CE%BA%CE%BF%CF%80%CE%AE-%CE%BE%CF%85%CE%BB%CE%B5%CE%AF%CE%B1%CF%82/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-18 00:21:01
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 18 03:20:58.867072 2026] [security2:error] [pid 2777555:tid 2777562] [remote 65.55.210.38:30667] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in adoro.gr"] [severity "CRITICAL"] [hostname "adoro.gr"] [uri "/wp-content/plugins/WP_Estimation_Form/assets/js/lfb_frontendPackedLibs.min.js"] [unique_id "ajM56iujf2PT-9Py5KPxagAAkQY"], referer: https://adoro.gr/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-17 06:01:21
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Qui ...
show more
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38 (US/United States/Washington/Quincy/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Wed Jun 17 09:01:15.027564 2026] [security2:error] [pid 2210293:tid 2210308] [remote 65.55.210.38:42562] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "104"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/jet-menu/assets/public/css/public.css"] [unique_id "ajI4K9Mtn8QwdXQy9m6sIQABUAs"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%B1%CE%BA%CE%B1%CE%BA%CE%B9%CE%B1/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-15 01:18:31
(3 months ago)
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000010) triggered by 65.55.210.38: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 04:18:28.241175 2026] [security2:error] [pid 921869:tid 921877] [remote 65.55.210.38:46981] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "bingbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "103"] [id "11000010"] [msg "BLOCKED BOT: bingbot - in ftiaxtomonosou.gr"] [severity "CRITICAL"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/uploads/elementor/css/post-9776.css"] [unique_id "ai9S5F7fuOvzHSXykmzsgAAABgU"], referer: https://ftiaxtomonosou.gr/corian
show less
Port Scan
Anonymous
2026-05-25 13:16:01
(4 months ago)
65.55.210.38 - - [25/May/2026:13:15:55 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/ ...
show more
65.55.210.38 - - [25/May/2026:13:15:55 +0000] "GET /sw.js HTTP/2.0" 444 0 "https://taiwan.suann.net/lv/m/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
65.55.210.38 - - [25/May/2026:13:15:55 +0000] "GET /workbox-835c8c05.js HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
65.55.210.38 - - [25/May/2026:13:15:57 +0000] "GET /sass/tailwind.scss HTTP/2.0" 444 0 "https://taiwan.suann.net/sw.js" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/146.0.7680.165 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
pocketpark
2026-05-04 21:06:48
(4 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: JSCHALLENGE | Protocol: HTTP/2 (GET) | En ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: JSCHALLENGE | Protocol: HTTP/2 (GET) | Endpoint: /_next/static/chunks/616-a388b2eae8ff0cc2.js | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ญ๐บ
kranem
2026-04-29 21:00:45
(5 months ago)
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HT ...
show more
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HTTP/2 (GET method)
Endpoint: /css/style.css
Timestamp: 2026-04-29T20:11:19Z
User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bingbot.htm) Chrome/136.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฆ๐บ
Anytech
2026-04-03 07:14:10
(5 months ago)
Blocked by Conn-Monitor: Automated bot activity
Web App Attack
๐ฉ๐ช
HandyTreff.de
2026-03-29 11:42:16
(6 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -33.795 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -33.795 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; bingbot/2.0; +http://www.bing.com/bin
show less
Web App Attack
Bad Web Bot
๐ฆ๐บ
MAGIC
2026-01-04 00:02:31
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2025-11-07 02:45:59
(10 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
Exploited Host
Web App Attack