๐ฉ๐ช
bancix
2026-08-24 08:00:36
(18 hours ago)
Heimdall NIDS: Automatic ban triggered. Reason: RST_LIMIT_EXCEEDED (5/5)
Port Scan
๐ฉ๐ช
Hazzard
2026-08-18 02:12:36
(6 days ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted]): (CF_ENABLE)
Bad Web Bot
๐จ๐ญ
backslash
2026-03-02 19:27:02
(5 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-02-22 16:20:36
(6 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ช๐ธ
librebit
2026-02-09 04:41:23
(6 months ago)
Brute force
Brute-Force
๐จ๐ฆ
1gz
2026-02-03 17:57:33
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /lajme/rrumbullaku-jep-doreheqjen-kryepolici-dorezon-detyren-neser-ja-nga-kush-pritet-te-zevendesohet/725454/
UA: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ช๐ธ
librebit
2026-02-03 14:18:48
(6 months ago)
Brute force
Brute-Force
๐จ๐ฆ
1gz
2026-01-21 01:51:26
(7 months ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /sport/video-dy-gola-per-tre-minuta-futbollisti-qe-la-kosoven-per-shqiperine-shkelqen-ndaj-ukrainasve/851880/
UA: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฏ๐ต
beon
2026-01-06 03:10:00
(7 months ago)
This IP performed automated reconnaissance and vulnerability scanning against my server on 2026-01-0 ...
show more
This IP performed automated reconnaissance and vulnerability scanning against my server on 2026-01-05T05:37:33Z UTC.
They probe with several queries using various strings. The query was c=aDRlQysyU2hwU1NhMnkrZXZ5T0pMUT09%5Dh%5BBVATDXQNwy46kVFHD7KiA%5Dl%5B%5Dl%5B&d=yg.
This single IP isn't particularly active, but when viewed as a group 47.128.64.0/18, it becomes very active. 47.128.64.0/18 is clearly malicious and should be blocked or blacklisted.
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Reinhard
2025-12-21 15:27:14
(8 months ago)
Unknown activity, but too many attacks with too many users.
Hacking
๐ฎ๐ฉ
hermawan
2025-12-13 00:49:52
(8 months ago)
[Sat Dec 13 07:49:51.828408 2025] [security2:error] [pid 238773:tid 139803667740352] [client 47.128. ...
show more
[Sat Dec 13 07:49:51.828408 2025] [security2:error] [pid 238773:tid 139803667740352] [client 47.128.113.9:23142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Feed" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "253"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Feed found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] ) request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-analisis-kejadian-hujan-lebat HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-analisis-kejadian-hujan-lebat"] [unique_id "aTy4L2Ig_-bqvcP1ro4TBAADAQA"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmk
...
show less
Hacking
Web App Attack
๐ช๐ธ
masterguru
2025-12-09 01:45:31
(8 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ธ
xmission.com
2025-12-03 12:24:09
(8 months ago)
47.128.113.9 - - [03/Dec/2025:05:24:08 -0700] "GET /related/parenthood/page/453/?page=67 HTTP/2.0" 2 ...
show more
47.128.113.9 - - [03/Dec/2025:05:24:08 -0700] "GET /related/parenthood/page/453/?page=67 HTTP/2.0" 200 12212 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36"
47.128.113.9 - - [03/Dec/2025:05:24:08 -0700] "GET /photos/leta/456.jpg HTTP/2.0" 404 548 "https://dooce.com/related/parenthood/page/453/?page=67" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36"
47.128.113.9 - - [03/Dec/2025:05:24:09 -0700] "GET /photos/leta/452.jpg HTTP/2.0" 404 548 "https://dooce.com/related/parenthood/page/453/?page=67" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36"
47.128.113.9 - - [03/Dec/2025:05:24:09 -0700] "GET /photos/leta/454.jpg HTTP/2.0" 404 548 "https://dooce.com/related/parenthood/page/453/?page=67" "Mozilla/5.0 (compatible; Byt
...
show less
Bad Web Bot
Anonymous
2025-12-01 15:47:00
(8 months ago)
Ports: 80,443; Direction: 1; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ธ๐ฌ
anotherwatcher
2025-11-27 21:28:29
(8 months ago)
bad bot
Bad Web Bot