๐ช๐ธ
librebit
2026-06-18 05:43:18
(1 day ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-04-03 03:11:00
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 23:10:56.531408 2026] [security2:error] [pid 5547:tid 5547] [client 47.128.59.131:12146] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.informativearticles.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.informativearticles.com"] [uri "/site-promotion/donutshopcop.com"] [unique_id "ac8vwKeqjGfwVQS8jhRFgAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐บ
conseilgouz
2026-03-23 19:34:10
(2 months ago)
are-88 : Bloc AI bots=>/component/icagenda/99-73-2015-10-02-11-04-18?Itemid=103&iccaldate=2033-2 ...
show more
are-88 : Bloc AI bots=>/component/icagenda/99-73-2015-10-02-11-04-18?Itemid=103&iccaldate=2033-2-1(Bytespider)
show less
Hacking
๐ช๐ธ
masterguru
2026-03-22 16:10:53
(2 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-19 04:43:30
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 00:43:22.551017 2026] [security2:error] [pid 25796:tid 25796] [client 47.128.59.131:38346] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.informativearticles.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.informativearticles.com"] [uri "/relationships/[email protected] "] [unique_id "abt-6oyck_aYBTYaVxlHQgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-02-26 19:18:04
(3 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐ฉ๐ช
Didier Lagaert
2026-02-16 03:35:30
(4 months ago)
lie-88 : Bloc AI bots=>/components/com_jevents/assets/css/jevcustom.css?v=3.6.56(Bytespider)
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-14 04:46:12
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 23:46:07.817695 2026] [security2:error] [pid 3305047:tid 3305108] [client 47.128.59.131:13094] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||batonrougegazette.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "batonrougegazette.com"] [uri "/uncategorized/world-series-legacy-rankings-who-has-the-most-to-gain-from-this-years-fall-classic/storyviewerfree.com"] [unique_id "aY_-D5_-8rXQiSlwYYwBYgAAAU0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
bigorre.org
2026-02-10 11:46:27
(4 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ฉ๐ช
BlueWire Hosting
2026-01-03 13:46:30
(5 months ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐ฎ๐ณ
dineshskt4all
2026-01-03 06:18:07
(5 months ago)
47.128.59.131 - - [03/Jan/2026:06:18:04 +0000] "GET /robots.txt HTTP/1.1" 200 66 "-" "Mozilla/5.0 (L ...
show more
47.128.59.131 - - [03/Jan/2026:06:18:04 +0000] "GET /robots.txt HTTP/1.1" 200 66 "-" "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )"
...
show less
IoT Targeted
๐ณ๐ฑ
i-turnradio.nl
2025-12-14 02:04:03
(6 months ago)
2025-12-14 @ 03:04:02 (CET) ~ Blocked based on risk assessment and prior abuse reports
Web App Attack
๐ฎ๐ฉ
hermawan
2025-12-12 11:11:37
(6 months ago)
[Fri Dec 12 18:10:22.520318 2025] [security2:error] [pid 452139:tid 139917928617664] [client 47.128. ...
show more
[Fri Dec 12 18:10:22.520318 2025] [security2:error] [pid 452139:tid 139917928617664] [client 47.128.59.131:41854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Feed" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "253"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Feed found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] ) request_line = GET /index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/prediksi-iklim/prediksi-dasarian/monitoring-dan-prediksi-curah-hujan"] [unique_id "aTv4HkqFyGcpw_thYnvJCQACgxI"] [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[452186] [oVevTv98sUk] [aTv4HkqFyGcpw_thYnvJCQACgxI] k
...
show less
Hacking
Web App Attack
๐ฌ๐ง
NotCool
2025-11-25 10:09:07
(6 months ago)
(CRAWLDELAY) Generic Bot Crawl-delay Violation 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1.compu ...
show more
(CRAWLDELAY) Generic Bot Crawl-delay Violation 47.128.59.131 (ec2-47-128-59-131.ap-southeast-1.compute.amazonaws.com): 10 in the last 3600 secs
show less
Bad Web Bot
Anonymous
2025-11-19 01:47:43
(7 months ago)
Ports: 80,443; Direction: 1; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH