๐บ๐ธ
kosada.com
2026-06-29 10:23:09
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ช๐ธ
pipeline.es
2026-06-28 02:24:13
(1 month ago)
Web scanning / probing for vulnerable paths | URL: /info/contact | Evidence: bestravel.pt 41.75.204. ...
show more
Web scanning / probing for vulnerable paths | URL: /info/contact | Evidence: bestravel.pt 41.75.204.10 - - [28/Jun/2026:04:23:19 +0200] \"HEAD /info/contact HTTP/1.1\" 404 - \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=NG | ASN: Inq-Digital-Nigeria-AS | Country: NG
show less
Port Scan
Web App Attack
Anonymous
2026-06-28 02:05:16
(1 month ago)
Blocked: Reason='Suspicious traffic score=65 (review-based detection)'; Requests=127
Hacking
Anonymous
2026-06-28 00:57:08
(1 month ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ง๐ช
cmbplf
2026-06-27 23:00:50
(1 month ago)
9.102 requests in 1 hour (6d5h59m)
Brute-Force
Bad Web Bot
๐ฆ๐บ
screwlooseit.com.au
2026-06-27 22:04:59
(1 month ago)
Blocked by CSF 13 firewall - Rule: NG/Nigeria/-
Web App Attack
๐ฎ๐ฉ
hermawan
2026-06-19 14:35:53
(1 month ago)
[Fri Jun 19 21:35:50.908445 2026] [security2:error] [pid 1132395:tid 140501461210816] [client 41.75. ...
show more
[Fri Jun 19 21:35:50.908445 2026] [security2:error] [pid 1132395:tid 140501461210816] [client 41.75.204.10:55235] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/prediksi-iklim/prediksi-dasarian/deterministik-curah-hujan-provinsi-jawa-timur HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-dasarian/deterministik-curah-hujan-provinsi-jawa-timur"] [unique_id "ajVTxmJgUeGk8Se-6L89WQACGAU"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[1132401] [0FqJNdz4hlk] [ajVTxmJgUeGk8Se-6L89WQACGAU] keep_alive=[1] [2026-06-19 21:35:50.908457] [R:ajVTxmJgUeGk8Se-6L89WQACGAU] U
...
show less
Email Spam
Hacking
๐ณ๐ฑ
soverin
2026-06-05 15:46:22
(1 month ago)
spam
Email Spam
๐ฌ๐ง
PeravixGroup
2026-05-24 03:20:08
(2 months ago)
Honeypot detection: Telnet / IoT device brute-force or exploitation attempt on port 23. Severity: ME ...
show more
Honeypot detection: Telnet / IoT device brute-force or exploitation attempt on port 23. Severity: MEDIUM. Aaran.cloud
show less
IoT Targeted
Brute-Force
๐ฉ๐ช
milcraft.nl
2026-05-15 14:10:30
(2 months ago)
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi ...
show more
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi patterns: filter_, add-to-cart=, orderby=, product_count=. Activity is consistent with high-volume request abuse.
show less
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 21:38:27
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 41.75.204.10 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 41.75.204.10 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 17:38:20.229060 2026] [security2:error] [pid 27919:tid 27919] [client 41.75.204.10:45728] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||williamfitzsimmons.com|F|2"] [data ".utphilly.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "williamfitzsimmons.com"] [uri "/news/0410-william-fitzsimmons-spring-tour-update/www.utphilly.com"] [unique_id "agTvTCwQUv0--TZxwOuOMgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐ฐ
PingMeMaybe
2026-05-05 19:40:21
(2 months ago)
Blocked by UFW on hk [23/tcp]
Source port: 52324
TTL: 47
Packet length: 60
TOS: 0x00
This report wa ...
show more
Blocked by UFW on hk [23/tcp]
Source port: 52324
TTL: 47
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
IoT Targeted
Anonymous
2026-04-28 18:02:17
(3 months ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-04-02 04:05:09
(3 months ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-01-27 01:04:48
(6 months ago)
Web attack
Bad Web Bot
Web App Attack