๐ฉ๐ช
jbcrn
2026-10-06 01:44:55
(3 hours ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Facebook, ruleset: ai.robots.txt. Reque ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Facebook, ruleset: ai.robots.txt. Requested honeypot path: /. User-Agent: facebookexternalhit/1.1 (+http://www.facebook.com/externalhit_uatext.php)
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-10-05 22:16:54
(6 hours ago)
Brute-Force
Web App Attack
๐ฉ๐ช
macrob
2026-10-05 21:21:58
(7 hours ago)
2026/10/05 21:21:56 [error] 3977075#3977075: *20360042 access forbidden by rule, client: 2a03:2880:f ...
show more
2026/10/05 21:21:56 [error] 3977075#3977075: *20360042 access forbidden by rule, client: 2a03:2880:f806:3b::, server: binixo.com.ar, request: "GET /wp-includes/css/dist/block-library/style.min.css?ver=5.3.7 HTTP/2.0", host: "binixo.com.ar", referrer: "https://binixo.com.ar/prestamos-personales-en-neuquen/"
2026/10/05 21:21:56 [error] 3977075#3977075: *20360050 access forbidden by rule, client: 2a03:2880:f806:3b::, server: binixo.com.ar, request: "GET /wp-content/themes/donna/slick/slick.css HTTP/2.0", host: "binixo.com.ar", referrer: "https://binixo.com.ar/prestamos-personales-en-neuquen/"
2026/10/05 21:21:56 [error] 3977079#3977079: *20360087 access forbidden by rule, client: 2a03:2880:f806:3b::, server: binixo.com.ar, request: "GET /wp-includes/js/jquery/jquery.js?ver=1.12.4-wp HTTP/2.0", host: "binixo.com.ar", referrer: "https://binixo.com.ar/prestamos-personales-en-neuquen/"
...
show less
Web App Attack
Anonymous
2026-10-05 20:58:56
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
mawan
2026-10-05 15:11:59
(13 hours ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
ph
2026-10-05 05:48:26
(23 hours ago)
Bad web bot attempting to run SiteMap.aspx on non-WP site
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 17:06:12
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-03 13:11:11
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 09:11:04.869568 2026] [security2:error] [pid 12196:tid 12196] [client 2a03:2880:f806:3b:::57504] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||williamfitzsimmons.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "williamfitzsimmons.com"] [uri "/news/0328-william-adds-chattanooga-date-uscan-tour/themodclub.com"] [unique_id "asD-6FFHv4at7bwiYCwI0gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2026-10-03 13:00:46
(2 days ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoin ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action: BLOCK | Protocol: HTTP/2 (GET) | Endpoint: /booru/artist/sela%2F%E3%81%9B%E3%82%89 | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)) โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-03 11:30:56
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 07:30:51.652897 2026] [security2:error] [pid 12710:tid 12710] [client 2a03:2880:f806:3b:::48588] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||adonamusic.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "adonamusic.com"] [uri "/adonamusic.com"] [unique_id "asDna8ISZdzPc4f375bljQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 09:14:54
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 05:14:49.111209 2026] [security2:error] [pid 465:tid 465] [client 2a03:2880:f806:3b:::41742] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Churchill II Recliner/Thumbs.db"] [unique_id "asDHiTLEfM62AIFl3X_U-QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-03 03:04:16
(3 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ซ๐ท
mrcrassi
2026-10-03 01:28:26
(3 days ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 (compatible; meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler))
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-02 00:43:58
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210730) triggered by 2a03:2880:f806:3b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 20:43:51.217673 2026] [security2:error] [pid 27581:tid 27581] [client 2a03:2880:f806:3b:::51874] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||intrinsicdiscovery.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "intrinsicdiscovery.com"] [uri "/intrinsicdiscovery.com"] [unique_id "ar7-R4RjszScTjfYm5d9dwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
abuseipdb.amaze321
2026-10-01 06:35:13
(4 days ago)
Automated reconnaissance: repeated requests for sensitive/non-existent paths.
Web App Attack
Bad Web Bot