๐ฉ๐ช
MarkGGN
2026-08-20 00:16:54
(1 month ago)
Web attack. 47.128.46.211 - - [20/Aug/2026:02:16:51 +0200] "GET /tag/blog/ HTTP/2.0" 200 44758 "-" " ...
show more
Web attack. 47.128.46.211 - - [20/Aug/2026:02:16:51 +0200] "GET /tag/blog/ HTTP/2.0" 200 44758 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; https://bytedance.sg.larkoffice.com/docx/K5bxdypulop3IIxrJb0lOjLVgFe)"
47.128.46.211 - - [20/Aug/2026:02:16:53 +0200] "GET /tag/blog/?essb_counter_cache=rebuild HTTP/2.0" 200 72 "https://www.*/tag/blog/" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; https://bytedance.sg.larkoffice.com/docx/K5bxdypulop3IIxrJb0lOjLVgFe)"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 19:35:09
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.46.211 (ec2-47-128-46-211.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.46.211 (ec2-47-128-46-211.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 15:35:03.455168 2026] [security2:error] [pid 19641:tid 19641] [client 47.128.46.211:60796] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elcalamo.com"] [uri "/pda/magana-calendas.PDB"] [unique_id "akLI5zKwJzVPcDDL8Q0kEAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
MarkGGN
2026-06-17 04:57:59
(3 months ago)
Web attack. 47.128.46.211 - - [17/Jun/2026:06:57:55 +0200] "GET /tag/blog/ HTTP/2.0" 200 44679 "-" " ...
show more
Web attack. 47.128.46.211 - - [17/Jun/2026:06:57:55 +0200] "GET /tag/blog/ HTTP/2.0" 200 44679 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; *)"
47.128.46.211 - - [17/Jun/2026:06:57:57 +0200] "GET /tag/blog/?essb_counter_cache=rebuild HTTP/2.0" 200 72 "https://www.*/tag/blog/" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; *)"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 19:46:00
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.46.211 (ec2-47-128-46-211.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.46.211 (ec2-47-128-46-211.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 15:45:55.733336 2026] [security2:error] [pid 30735:tid 30735] [client 47.128.46.211:65056] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "elcalamo.com"] [uri "/pda/magana-calendas.PDB"] [unique_id "ag4PcwlpGpgR3Px2q4y64QAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-05-04 16:37:22
(5 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-02-13 16:06:17
(7 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ฉ๐ช
dbmwebdesign
2026-01-24 02:35:32
(8 months ago)
Bot detected and blocked by Fail2Ban in bytespider jail
Bad Web Bot
๐ฉ๐ช
Reinhard
2026-01-06 11:15:40
(9 months ago)
Unknown activity, but too many attacks with too many users.
Hacking
๐ฆ๐ท
RocketEmi
2025-11-11 06:51:07
(10 months ago)
Automated web crawling detected: high request rate, scraping multiple pages. Behavior consistent wit ...
show more
Automated web crawling detected: high request rate, scraping multiple pages. Behavior consistent with Bad Web Bot.
show less
Bad Web Bot
๐ช๐ธ
masterguru
2025-10-12 13:01:51
(11 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000-123)
show less
Bad Web Bot
๐ซ๐ท
bigorre.org
2025-09-10 15:31:23
(1 year ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
Anonymous
2025-09-09 15:51:09
(1 year ago)
Ports: 80,443; Direction: 1; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ซ๐ท
JPPO
2025-09-01 21:21:11
(1 year ago)
Huawei/Honor/Bytedance/Petal/tiktok robot not always clean : blocked
Web App Attack
๐ซ๐ท
bigorre.org
2025-08-19 15:18:20
(1 year ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
Anonymous
2025-08-13 22:46:29
(1 year ago)
Excessive crawling/scraping
Hacking
Brute-Force