[fail2ban Auto Report] {"time":"2026-05-10T21:40:37.623549812-04:00","level":"INFO","source":{"funct ...
show more[fail2ban Auto Report] {"time":"2026-05-10T21:40:37.623549812-04:00","level":"INFO","source":{"function":"github.com/TecharoHQ/anubis/lib.(*Server).checkRules","file":"/Users/cadey/Code/TecharoHQ/botstopper/upstream/anubis/lib/anubis.go","line":309},"msg":"explicit deny","subsystem":"anubis","host":"searxng.canine.tools","method":"GET","path":"/search","user_agent":"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36","accept_language":"en-US,en;q=0.9","priority":"u=0, i","x-forwarded-for":"14.191.17.183","x-real-ip":"14.191.17.183","host":"searxng.canine.tools","check_result":{"name":"bot/aggressive-chinese-asns","rule":"DENY","weight":0}}
...
show less
[Askari] | Behavior: Outdated browser, Concurrent page load during attack, HTTP/1.1 over TLS, Slow-r ...
show more[Askari] | Behavior: Outdated browser, Concurrent page load during attack, HTTP/1.1 over TLS, Slow-read attack, Targeting specific pages
show less
ELEVATED_THREAT | 111 IPs targeting /brand/satco-products-inc.html | Facet request during elevated t ...
show moreELEVATED_THREAT | 111 IPs targeting /brand/satco-products-inc.html | Facet request during elevated threat (facet_ratio=0.85, unique_ips=462) | Recv-Q=1489 bytes on ESTABLISHED connection (threshold=1000)
show less
Triggered Cloudflare WAF (firewallCustom) from VN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show moreTriggered Cloudflare WAF (firewallCustom) from VN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/horoskopi-13-mars-2022
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
DDoS botnet 510.000+ IPs; URL with bing/trustpilot/githubhelp and %C2%A4 or \xc2\xa4. NEW 09/2025: a ...
show moreDDoS botnet 510.000+ IPs; URL with bing/trustpilot/githubhelp and %C2%A4 or \xc2\xa4. NEW 09/2025: amplification attacks via third-parties e.g. HTTP_USER_AGENT facebookexternalhit/meta-externalagent/meta-externalfetcher or IPs from googleusercontent.com with fake HTTP_REFERER foxnews.com/newsweek.com/upwork.com/activision.com/... Port 443.
show less