๐บ๐ธ
TPI-Abuse
2026-10-01 13:30:55
(19 hours ago)
(mod_security) mod_security (id:210350) triggered by 81.88.148.10 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 81.88.148.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:30:50.995150 2026] [security2:error] [pid 11710:tid 11728] [client 81.88.148.10:35602] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||joanagauer.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "joanagauer.com"] [uri "/"] [unique_id "ar5gioTzA043BtsmzAJqDgAAANA"], referer: https://backlinksonline.website/dir/strong-seo-backlinks-107629
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-09-18 14:38:00
(1 week ago)
HTTP DDoS Attack Layer 7
DDoS Attack
๐บ๐ธ
kosada.com
2026-08-21 08:33:12
(1 month ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2026-08-03 16:38:56
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-07-17 15:17:01
(2 months ago)
HTTP flood against /retreat-corp on Apache webserver
Brute-Force
๐บ๐ธ
kosada.com
2026-06-07 19:42:17
(3 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐ณ๐ฑ
soverin
2026-06-05 15:42:42
(3 months ago)
spam
Email Spam
๐บ๐ธ
TPI-Abuse
2026-05-30 10:58:30
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 81.88.148.10 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 81.88.148.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 06:58:24.727507 2026] [security2:error] [pid 19677:tid 19677] [client 81.88.148.10:35756] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.nwarchitect.com|F|2"] [data ".k-vitamins.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.nwarchitect.com"] [uri "/www.k-vitamins.com"] [unique_id "ahrC0EKlfy5yd03s22q6twAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
hermawan
2026-04-29 06:57:45
(5 months ago)
[Wed Apr 29 13:54:22.849964 2026] [security2:error] [pid 178496:tid 140650623243968] [client 81.88.1 ...
show more
[Wed Apr 29 13:54:22.849964 2026] [security2:error] [pid 178496:tid 140650623243968] [client 81.88.148.10:38824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.25.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "623"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php"] [unique_id "afGrHjd2p7rE9igsIhn5WwACBQk"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[178532] [lOdM0RPisdc] [afGrHjd2p7rE9igsIhn5WwACBQk] keep_alive=[1] [2026-04-29 13:54:22.849972] [R:afGrHjd2p7rE9igsIhn5WwACBQk] UA:'Mozilla/5.0 (iPhone; CPU iPhone OS 17_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.6 Mobile/15E148 Safari/604.1 OPT/5.3.0' Host:'st
...
show less
Email Spam
Hacking
๐จ๐ฆ
polycoda
2026-04-19 10:41:58
(5 months ago)
๐ฅถ Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
DDoS Attack
๐ธ๐ฌ
mypatricks
2026-03-28 01:34:24
(6 months ago)
81.88.148.10 | Port: 13575 | DNS: 81.88.148.10 2026-03-28T09:34:23+08:00 Asia/Almaty | Bad Behavior ...
show more
81.88.148.10 | Port: 13575 | DNS: 81.88.148.10 2026-03-28T09:34:23+08:00 Asia/Almaty | Bad Behavior Activity | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /customer-self-service/how-do-i-check-my-location-for-service-availability/ | Ref: - | Country: KZ/Kazakhstan/+05:00 IP City: Almaty 9e32e463582660c9-WAW/Warsaw, Poland 1 hits/0 secs Robots 1
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
Anonymous
2026-01-13 10:20:03
(8 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
Anonymous
2025-12-11 11:02:48
(9 months ago)
Web attack
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-10 14:52:11
(9 months ago)
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized ac ...
show more
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized access"
show less
DDoS Attack
SQL Injection
Exploited Host
๐ฉ๐ช
SMARTNET
2025-11-30 18:38:00
(10 months ago)
Aisuru(Mirai variant) DDoS
DDoS Attack