๐ฎ๐ฉ
bps-statistics
2026-07-21 18:46:23
(2 days ago)
Malicious Access
Brute-Force
๐บ๐ธ
kosada.com
2026-07-11 05:25:44
(1 week ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฉ๐ช
Vegascosmetics
2026-07-04 23:28:42
(2 weeks ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐บ๐ธ
kosada.com
2026-07-03 21:44:15
(2 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
cybsecaoccol
2026-06-13 01:03:18
(1 month ago)
unauthorized connection or malicious port scan attempted on tcp port 445 - dr
Port Scan
Hacking
๐ฉ๐ช
pltcldvlpr
2026-06-06 13:06:05
(1 month ago)
Bogus Useragent: 158.140.163.72 - - [06/Jun/2026:15:06:04 +0200] "GET /protocol?id=st_3_71¶graph ...
show more
Bogus Useragent: 158.140.163.72 - - [06/Jun/2026:15:06:04 +0200] "GET /protocol?id=st_3_71¶graph=14237554&seq=1299 HTTP/1.1" 444 0 "-" "Opera/9.33.(Windows 98; Win 9x 4.90; lg-UG) Presto/2.9.190 Version/12.00" asn=63859 org="PT. Eka Mas Republik" country=ID
...
show less
Bad Web Bot
๐ฆ๐บ
MAGIC
2026-06-05 00:06:46
(1 month ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฎ๐ฉ
hermawan
2026-06-04 21:43:42
(1 month ago)
[Fri Jun 05 04:43:42.360251 2026] [security2:error] [pid 512125:tid 139764545083072] [client 158.140 ...
show more
[Fri Jun 05 04:43:42.360251 2026] [security2:error] [pid 512125:tid 139764545083072] [client 158.140.163.72:1891] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "chatgpt" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: chatgpt found within REQUEST_HEADERS:Referer: https://staklim-jatim.bmkg.go.id/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/6-bulan-ke-depan/555561117-prakiraan-bulanan-curah-hujan-di-kabupaten-bojonegoro-untuk-6-bulan-ke-depan?utm_source=chatgpt.com request_line = GET /favicon.ico HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/favicon.ico"] [unique_id "aiHxjuHc5JPe5ojEHQ-X1gAAEAI"], referer https://staklim-jatim.bmkg.go.id/index.php/prakiraan-iklim/prakiraan-bulanan/prakiraan-curah-hujan-bulanan/6-bulan-ke-depan/555561117-prakiraan-bulanan-curah-hujan-di-kabu
...
show less
Email Spam
Hacking
๐ธ๐ฌ
mypatricks
2026-05-22 13:33:52
(2 months ago)
158.140.163.72 | Port: 10746 | DNS: host-158.140.163-72.myrepublic.co.id 2026-05-22T21:33:51+08:00 A ...
show more
158.140.163.72 | Port: 10746 | DNS: host-158.140.163-72.myrepublic.co.id 2026-05-22T21:33:51+08:00 Asia/Jakarta | FETCH Sproofing Activity Detetced. | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /?cefb98dbd89f89e988f=653&1752489892 | Ref: - | Country: ID/Indonesia/+07:00 IP City: Surabaya 9ffc31ee2a50cec3-CGK/Jakarta, Indonesia 1 hits/0 secs Robots 2
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
๐ฎ๐ฉ
hermawan
2026-05-19 03:26:01
(2 months ago)
Captured JA4H: ge20n_c7d666465891 | Log: 158.140.163.72 - - [19/May/2026:10:19:19 +0700] "GET /image ...
show more
Captured JA4H: ge20n_c7d666465891 | Log: 158.140.163.72 - - [19/May/2026:10:19:19 +0700] "GET /images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Curah_Hujan_Bulanan/Prakiraan_Curah_Hujan_Bulanan_Provinsi_Jawa_Timur/2025/12_Desember_2025/03_Prediksi_Curah_Hujan_Bulan_APRIL_2026_di_Provinsi_Jawa_Timur-Update_dari_Analisis_Bulan_Desember_2025.jpg HTTP/2.0" 200 650081 "https://myactivity.google.com/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Mobile Safari/537.36" ge20n_sec-ch-ua-full-version-list,sec-ch-ua-platform,sec-ch-ua,sec-ch-ua-bitness,sec-ch-ua-model,sec-ch-ua-mobile,sec-ch-ua-form-factors,sec-ch-ua-wow64,sec-ch-ua-arch,sec-ch-ua-full-version,user-agent,sec-ch-ua-platform-version,accept,sec-fetch-site,sec-fetch-mode,sec-fetch-dest,sec-fetch-storage-access,referer,accept-encoding,accept-language,priority,host...
...
show less
Email Spam
Hacking
๐ซ๐ท
masterguru
2026-05-14 08:04:54
(2 months ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 158.140.163.72 (ID/Indonesia/host-158.140.163 ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 158.140.163.72 (ID/Indonesia/host-158.140.163-72.myrepublic.co.id): 1 in the last 3600 secs (0-193)
show less
Hacking
๐บ๐ธ
octageeks.com
2026-05-13 04:08:20
(2 months ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 08:58:24
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 158.140.163.72 (host-158.140.163-72.myrepublic. ...
show more
(mod_security) mod_security (id:225170) triggered by 158.140.163.72 (host-158.140.163-72.myrepublic.co.id): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 04:58:19.940940 2026] [security2:error] [pid 8407:tid 8407] [client 158.140.163.72:22654] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nwuoregon.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nwuoregon.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agLrq3Z5XJyXAx7fdvlM8AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-12 08:44:31
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 08:35:34
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 158.140.163.72 (host-158.140.163-72.myrepublic. ...
show more
(mod_security) mod_security (id:225170) triggered by 158.140.163.72 (host-158.140.163-72.myrepublic.co.id): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 04:35:29.504027 2026] [security2:error] [pid 18003:tid 18003] [client 158.140.163.72:36734] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||scswat.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "scswat.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agLmUUuIkBde3_o-JkrP8AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack