๐ฉ๐ช
dbmwebdesign
2026-01-29 10:50:52
(8 months ago)
Bot detected and blocked by Fail2Ban in bytespider jail
Bad Web Bot
๐ซ๐ท
claude CALVET
2026-01-15 17:42:53
(8 months ago)
gew-Joomla User : try to access forms...
Hacking
๐ฆ๐ท
RocketEmi
2025-12-27 21:44:46
(9 months ago)
Automated web crawling detected: high request rate, scraping multiple pages. Behavior consistent wit ...
show more
Automated web crawling detected: high request rate, scraping multiple pages. Behavior consistent with Bad Web Bot.
show less
Bad Web Bot
๐บ๐ธ
fortypoundhead
2025-12-26 12:36:43
(9 months ago)
Banned IP Address
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-22 19:13:42
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 22 14:13:37.751367 2025] [security2:error] [pid 17230:tid 17230] [client 47.128.18.35:35944] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||brickyardinn.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "brickyardinn.com"] [uri "/mail to: [email protected] "] [unique_id "aUmYYeBogZKSsryUjIQGewAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-22 06:01:55
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 22 01:01:50.325781 2025] [security2:error] [pid 28238:tid 28238] [client 47.128.18.35:19228] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.jerusalem-korczak-home.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.jerusalem-korczak-home.com"] [uri "/jek/jrgb/mihoels/WS_FTP.LOG"] [unique_id "aUjeznv3TiZfC1aY2zjU1AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-19 19:05:27
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 19 14:05:20.119077 2025] [security2:error] [pid 26794:tid 26794] [client 47.128.18.35:59890] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.gadgeteer.net|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.gadgeteer.net"] [uri "/geekly.com"] [unique_id "aUWh8MHaz7Eq-vfv6gnB6wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
fortypoundhead
2025-12-16 11:00:43
(9 months ago)
Banned IP Address
Hacking
Web App Attack
๐ซ๐ท
bigorre.org
2025-12-12 13:11:23
(9 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ฉ๐ช
conseilgouz
2025-11-15 14:21:15
(10 months ago)
vee-24 : CGSECURE_MSG_24=>/component/weblinks/weblink/35-sellerie-champenoise?Itemid=1029&catid= ...
show more
vee-24 : CGSECURE_MSG_24=>/component/weblinks/weblink/35-sellerie-champenoise?Itemid=1029&catid=13&task=weblink.go(Bytespider)
show less
Hacking
Anonymous
2025-11-09 08:01:07
(10 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-08 13:08:26
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.18.35 (ec2-47-128-18-35.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 08 08:08:22.503774 2025] [security2:error] [pid 2881:tid 2881] [client 47.128.18.35:35562] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bahamascruisersguide.com|F|2"] [data ".blogspot.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bahamascruisersguide.com"] [uri "/Blogs-Websites/snowbirdscompassrose.blogspot.com"] [unique_id "aQ9AxumCG5yB6xzzhwvQPAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
xmission.com
2025-10-09 22:14:14
(11 months ago)
47.128.18.35 - - [09/Oct/2025:16:14:13 -0600] "GET /category/photos/daily-photo/page/1852/?page=174 ...
show more
47.128.18.35 - - [09/Oct/2025:16:14:13 -0600] "GET /category/photos/daily-photo/page/1852/?page=174 HTTP/2.0" 200 7632 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36"
47.128.18.35 - - [09/Oct/2025:16:14:13 -0600] "GET /wp-content/uploads/2012/07/04_20_2006.jpg HTTP/2.0" 206 500 "https://dooce.com/category/photos/daily-photo/page/1852/?page=174" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36"
47.128.18.35 - - [09/Oct/2025:16:14:14 -0600] "GET /photos/dailyphoto/04_20_2006_02.jpg HTTP/2.0" 404 548 "https://dooce.com/category/photos/daily-photo/page/1852/?page=174" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36"
47.128.18.35 - - [09/Oct/2025:16:14:14 -0600] "GET /photos/dailyphoto/04_20_2006.jpg HTTP/2.0" 206 500 "ht
...
show less
Bad Web Bot
Anonymous
2025-10-08 07:56:18
(11 months ago)
Excessive crawling/scraping
Hacking
Brute-Force
๐ซ๐ท
bigorre.org
2025-09-23 11:45:52
(1 year ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot