๐ฉ๐ช
Hazzard
2026-07-30 08:15:25
(9 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted]): (CF_ENABLE)
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-07-18 07:25:44
(1 week ago)
Bad Web Bot
DDoS Attack
Bad Web Bot
๐จ๐ญ
backslash
2026-02-28 15:36:06
(5 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-02-28 15:34:25
(5 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ช๐ธ
librebit
2026-02-22 04:55:35
(5 months ago)
Brute force
Brute-Force
๐ช๐ธ
masterguru
2026-02-19 17:07:32
(5 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-01-21 13:29:00
(6 months ago)
(mod_security) mod_security (id:211180) triggered by 47.128.35.63 (ec2-47-128-35-63.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:211180) triggered by 47.128.35.63 (ec2-47-128-35-63.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 08:28:54.269301 2026] [security2:error] [pid 16234:tid 16234] [client 47.128.35.63:23402] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_HEADERS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "50"] [id "211180"] [rev "3"] [msg "COMODO WAF: Session Fixation: SessionID Parameter Name with No Referer||wisconsinstatehuntingexpo.com|F|2"] [data "Matched Data: cftoken found within REQUEST_HEADERS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wisconsinstatehuntingexpo.com"] [uri "/"] [unique_id "aXDUloXKx5xcBj1B7JBG8AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
librebit
2026-01-05 12:53:07
(6 months ago)
Brute force
Brute-Force
๐ฉ๐ช
Didier Lagaert
2025-12-21 00:45:51
(7 months ago)
lie-88 : Bloc AI bots=>/component/jevents/evenementsparjour/2028/1/11/43%7C66?Itemid=0(Bytespider)
Hacking
๐ฆ๐บ
MAGIC
2025-12-07 00:18:15
(7 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-28 22:31:56
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.35.63 (ec2-47-128-35-63.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.35.63 (ec2-47-128-35-63.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 28 17:31:52.402604 2025] [security2:error] [pid 4299:tid 4299] [client 47.128.35.63:50078] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.med-engineering.com|F|2"] [data ".herbplaster.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.med-engineering.com"] [uri "/www.herbplaster.com"] [unique_id "aSoi2HrhcCJ7S0a3LwX8kQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-03 03:43:01
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.35.63 (ec2-47-128-35-63.ap-southeast-1.c ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.35.63 (ec2-47-128-35-63.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 02 22:42:53.872256 2025] [security2:error] [pid 11502:tid 11502] [client 47.128.35.63:59202] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||etudesoftware.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "etudesoftware.com"] [uri "/[email protected] "] [unique_id "aQgkvSGjILp4Vpg7kFyvvgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2025-10-26 17:13:53
(9 months ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /genshin-stella-mod/download
UA: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฆ๐บ
MAGIC
2025-10-20 03:01:59
(9 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฎ๐ณ
dineshskt4all
2025-10-09 14:31:53
(9 months ago)
47.128.35.63 - - [09/Oct/2025:14:31:51 +0000] "GET /index.php?limit=50&manufacturer_id=17&order=DESC ...
show more
47.128.35.63 - - [09/Oct/2025:14:31:51 +0000] "GET /index.php?limit=50&manufacturer_id=17&order=DESC&product_id=146&route=product%2Fproduct&sort=p.model HTTP/1.0" 200 15626 "-" "Mozilla/5.0 (compatible; Bytespider; [email protected] ) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.0.0 Safari/537.36"
...
show less
IoT Targeted