๐ฉ๐ช
Vegascosmetics
2026-06-13 11:41:41
(4 hours ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ท๐บ
Mga Admin
2026-06-13 03:51:22
(12 hours ago)
216.73.217.101 - - [13/Jun/2026:10:51:21 +0700] "GET /yurii/ABEL/ HTTP/1.1" 404 196 "http://mga.bion ...
show more
216.73.217.101 - - [13/Jun/2026:10:51:21 +0700] "GET /yurii/ABEL/ HTTP/1.1" 404 196 "http://mga.bionet.nsc.ru/yurii/ABEL/" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
...
show less
Web App Attack
๐ฉ๐ช
netclix.gr
2026-06-13 01:48:25
(14 hours ago)
(PERMBLOCK) 216.73.217.101 (US/United States/-) has had more than 2 temp blocks in the last 604800 s ...
show more
(PERMBLOCK) 216.73.217.101 (US/United States/-) has had more than 2 temp blocks in the last 604800 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐บ๐ธ
juguemosalacarioca.com
2026-06-12 01:43:14
(1 day ago)
Multiple HTTP calls attempting to GET resources using common API calls or formats on port 8080
Web App Attack
๐ฆ๐บ
MAGIC
2026-06-11 00:19:57
(2 days ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ท
Campus France
2026-06-10 11:30:01
(3 days ago)
...
Brute-Force
๐บ๐ธ
kosada.com
2026-06-10 09:35:43
(3 days ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-10 07:47:14
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 216.73.217.101 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 216.73.217.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 03:47:09.918122 2026] [security2:error] [pid 24629:tid 24629] [client 216.73.217.101:15671] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.scrase.com"] [uri "/WebResource.axd"] [unique_id "aikWfUrPGhVjYBhE6Gk9NgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-06-10 02:16:23
(3 days ago)
BAD BOT - Detected and Blocked.. Matched phrase "claudebot" at REQUEST_HEADERS:user-agent. (1100000- ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "claudebot" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
Anonymous
2026-06-10 02:08:33
(3 days ago)
Web attack
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-06-10 00:21:54
(3 days ago)
(bot_kill_mega) Aggressive Bot Blocked: ClaudeBot 216.73.217.101 (US/United States/-): 1 in the last ...
show more
(bot_kill_mega) Aggressive Bot Blocked: ClaudeBot 216.73.217.101 (US/United States/-): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 216.73.217.101 - - [10/Jun/2026:03:21:47 +0300] "GET /robots.txt HTTP/2.0" 200 723 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
show less
Port Scan
๐บ๐ธ
LotPhantom
2026-06-10 00:07:08
(3 days ago)
216.73.217.101 - - [10/Jun/2026:00:06:07 +0000] "GET /robots.txt HTTP/2.0" 200 57 "-" "Mozilla/5.0 A ...
show more
216.73.217.101 - - [10/Jun/2026:00:06:07 +0000] "GET /robots.txt HTTP/2.0" 200 57 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; [email protected] )"
...
show less
Web App Attack
Bad Web Bot
๐ซ๐ท
Dorian GRANDHAY
2026-06-09 07:49:18
(4 days ago)
(PERMBLOCK) 216.73.217.101 (US/United States/-) has had more than 4 temp blocks in the last 604800 s ...
show more
(PERMBLOCK) 216.73.217.101 (US/United States/-) has had more than 4 temp blocks in the last 604800 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ฉ๐ช
DocNetzwerk
2026-06-09 06:58:59
(4 days ago)
216.73.217.101 (US/United States/-), more than 7 Apache 403 hits
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 04:34:29
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 216.73.217.101 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 216.73.217.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:34:21.514127 2026] [security2:error] [pid 27622:tid 27622] [client 216.73.217.101:54622] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.accordionfactory.com|F|2"] [data ".web.ui.webresource.axd"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.accordionfactory.com"] [uri "/Telerik.Web.UI.WebResource.axd"] [unique_id "aieXzeRrvXJ4RPk_dWWW4AAAAH8"]
show less
Brute-Force
Bad Web Bot
Web App Attack