๐ฎ๐ฉ
hermawan
2026-09-19 20:48:46
(17 hours ago)
[Sun Sep 20 03:48:42.220679 2026] [security2:error] [pid 120911:tid 140496718501568] [client 91.211. ...
show more
[Sun Sep 20 03:48:42.220679 2026] [security2:error] [pid 120911:tid 140496718501568] [client 91.211.135.3:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "601"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:referer: https://www.bmkg.go.id/ request_line = GET /index.php/profil/meteorologi/list-all-categories/551-klimatologi/prakiraan-klimatologi/peringatan-dini/555562843-press-release-kewaspadaan-cuaca-ekstrim-di-jawa-timur-11-20-maret-2026 HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-all-categories/551-klimatologi/prakiraan-klimatologi/peringatan-dini/555562843-press-release-kewaspadaan-cuaca-ekstrim-di-jawa-timur-11-20-maret-2026"] [unique_id "aq71KhkpG24uISRwBLoe5QAAAMg"], referer https://www.bmkg.go.id/ [sta
...
show less
Email Spam
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-17 08:56:48
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 91.211.135.3 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 91.211.135.3 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 04:56:34.690243 2026] [security2:error] [pid 32544:tid 32544] [client 91.211.135.3:27951] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||brucerohr.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "brucerohr.com"] [uri "/"] [unique_id "aqurQkSdqJwjmUt6KHyz1wAAACA"], referer: https://productseochecker.space/dir/ethical-link-building-services-29792
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-09-14 08:19:42
(6 days ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0
show less
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-09-11 09:33:26
(1 week ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฉ๐ช
nyuuzyou
2026-09-09 22:17:08
(1 week ago)
Client failed challenge verification, marked as suspicious. HTTP request received over TCP on applic ...
show more
Client failed challenge verification, marked as suspicious. HTTP request received over TCP on application ports 80/443. Observed 2026-09-09T22:17:08Z.
show less
Bad Web Bot
๐ซ๐ฎ
6kilowatti
2026-08-22 08:26:35
(4 weeks ago)
2026-08-22T11:26:34.458836+03:00 mummo kernel: [UFW BLOCK] IN=enp0s25 OUT= MAC=6c:62:6d:d6:a5:bc:00: ...
show more
2026-08-22T11:26:34.458836+03:00 mummo kernel: [UFW BLOCK] IN=enp0s25 OUT= MAC=6c:62:6d:d6:a5:bc:00:00:5e:00:01:58:08:00 SRC=91.211.135.3 DST=83.148.240.21 LEN=60 TOS=0x00 PREC=0x00 TTL=50 ID=24044 DF PROTO=TCP SPT=60606 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ฉ๐ช
QUADEMU Abuse Dpt
2024-03-23 17:05:14
(2 years ago)
[New] Noxious/Nuisible/ะฒัะตะดะพะฝะพัะฝัะน Host.
Port Scan
Exploited Host
๐ซ๐ท
geeek
2024-03-23 12:37:15
(2 years ago)
Port scanning: 8080 TCP Blocked
Port Scan
๐ฌ๐ท
JCB
2024-03-23 09:29:00
(2 years ago)
91.211.135.3 - - [22/Mar/2024:20:38:31 +0200] "GET /status HTTP/1.1" 404 196 "-" "Mozilla"
91.211.1 ...
show more
91.211.135.3 - - [22/Mar/2024:20:38:31 +0200] "GET /status HTTP/1.1" 404 196 "-" "Mozilla"
91.211.135.3 - - [22/Mar/2024:20:38:31 +0200] "GET /stat HTTP/1.1" 404 196 "-" "Mozilla"
show less
Web App Attack
๐ซ๐ท
ParaBug
2024-03-22 19:19:43
(2 years ago)
91.211.135.3 - - [22/Mar/2024:20:19:43 +0100] "GET http://www.google.com/ HTTP/1.0" 403 363 "-" "Moz ...
show more
91.211.135.3 - - [22/Mar/2024:20:19:43 +0100] "GET http://www.google.com/ HTTP/1.0" 403 363 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)"
...
show less
Phishing
Brute-Force
Web App Attack
๐ซ๐ท
oonux.net
2024-03-22 12:17:12
(2 years ago)
RouterOS: Scanning detected TCP 91.211.135.3:59029 > x.x.x.x:80
Port Scan