๐ฆ๐บ
MAGIC
2026-05-06 00:47:04
(1 month ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
entspannt
2026-04-28 20:08:15
(1 month ago)
Automated scanning with known malicious useragent: "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537 ...
show more
Automated scanning with known malicious useragent: "Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )" and uri: "/robots.txt"
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-14 19:05:11
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 47.128.60.108 (ec2-47-128-60-108.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.60.108 (ec2-47-128-60-108.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 14 15:05:04.350325 2026] [security2:error] [pid 1854687:tid 1854687] [client 47.128.60.108:37448] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||home.agingworkforcenews.com|F|2"] [data ".myceridian.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "home.agingworkforcenews.com"] [uri "/http/www.myceridian.com"] [unique_id "ad6P4CKc8Hf_DD9npIplUQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
bigorre.org
2026-03-02 16:13:08
(3 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐จ๐ญ
backslash
2026-03-01 06:57:10
(3 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐จ๐ฆ
1gz
2026-02-20 02:52:16
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Linux; Android 5.0) AppleWebKit/537.36 (KHTML, like Gecko) Mobile Safari/537.36 (compatible; Bytespider; [email protected] )
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-02-09 13:29:05
(4 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ฉ๐ช
Didier Lagaert
2026-02-02 01:36:43
(4 months ago)
lie-88 : Bloc AI bots=>/component/jevents/evenementsparjour/2025/12/9/-?Itemid=950(Bytespider)
Hacking
๐บ๐ธ
TPI-Abuse
2026-01-12 01:42:27
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.60.108 (ec2-47-128-60-108.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.60.108 (ec2-47-128-60-108.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 11 20:42:23.197979 2026] [security2:error] [pid 19407:tid 19407] [client 47.128.60.108:42262] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||pages4you.com|F|2"] [data ".old"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "pages4you.com"] [uri "/default.old"] [unique_id "aWRRf1EVNVpsbOQnH8QqgAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
Tokolosh Hunters
2025-11-21 15:00:20
(6 months ago)
AutoBlockWindow-Known bad useragent query-2025-11-21 15:00:19
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-07 11:03:37
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 47.128.60.108 (ec2-47-128-60-108.ap-southeast-1 ...
show more
(mod_security) mod_security (id:210730) triggered by 47.128.60.108 (ec2-47-128-60-108.ap-southeast-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 07 06:03:29.538020 2025] [security2:error] [pid 24892:tid 24892] [client 47.128.60.108:10110] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||garyandthegroove.com|F|2"] [data ".theashlandcafe.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "garyandthegroove.com"] [uri "/ WWW.theashlandcafe.com"] [unique_id "aQ3SAeF-rZ2HuTXXiYp54gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-29 08:37:36
(7 months ago)
Excessive crawling/scraping
Hacking
Brute-Force
๐ฆ๐บ
MAGIC
2025-10-09 02:03:36
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ซ๐ท
bigorre.org
2025-09-22 13:08:58
(8 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot
๐ซ๐ท
bigorre.org
2025-09-20 14:02:17
(8 months ago)
Excessive crawling : exceed crawl-delay defined in robots.txt
Bad Web Bot