๐ซ๐ฎ
Christopher Hughes
2026-07-26 04:02:26
(2 hours ago)
47.236.96.46 - - [26/Jul/2026:05:02:25 +0100] "GET /nb/issues/27/19/images/-000.png HTTP/1.1" 200 86 ...
show more
47.236.96.46 - - [26/Jul/2026:05:02:25 +0100] "GET /nb/issues/27/19/images/-000.png HTTP/1.1" 200 86786 "-" "EmailWolf 1.00"
...
show less
Bad Web Bot
Anonymous
2026-07-25 20:41:01
(9 hours ago)
Malicious activity detected
Hacking
Web App Attack
๐ฉ๐ช
filstal.org
2026-07-25 18:04:03
(12 hours ago)
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. U ...
show more
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. UA: Mozilla/4.0 (compatible; MSIE 6.0; Windows CE; IEMobile 6.12; Microsoft ZuneHD 4.3)
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
etu brutus
2026-07-25 12:34:02
(17 hours ago)
47.236.96.46 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 10:58:25
(19 hours ago)
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 06:58:18.802026 2026] [security2:error] [pid 1328818:tid 1328818] [client 47.236.96.46:9272] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.onward.ws|F|4"] [data "EmailWolf"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.onward.ws"] [uri "/page2/page68/files/RBPFBand.jpg"] [unique_id "amSWyiCmRP2Su1KyeBvKTAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 03:36:07
(1 day ago)
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 23:35:59.863095 2026] [security2:error] [pid 725816:tid 725816] [client 47.236.96.46:46122] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||tulsatvmemories.com|F|4"] [data "Web Downloader"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "tulsatvmemories.com"] [uri "/imag2006/chew/smoking.jpg"] [unique_id "amQvHyF70p3S9zMLQBqNoQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
impra
2026-07-25 00:22:47
(1 day ago)
Detected 5 connection attempts.
Port Scan
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 21:02:04
(1 day ago)
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 17:01:59.542813 2026] [security2:error] [pid 1214037:tid 1214037] [client 47.236.96.46:61808] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||thenewplace.org|F|4"] [data "Microsoft URL"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "thenewplace.org"] [uri "/img/johnson/blog-sandburg.jpg"] [unique_id "amPSxyQFCRxxgeeOTPhM7AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 14:09:09
(1 day ago)
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 10:09:02.855029 2026] [security2:error] [pid 3863429:tid 3863429] [client 47.236.96.46:8352] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.rimworld.com|F|4"] [data "Web Downloader"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.rimworld.com"] [uri "/notra/photos/1_300x435t.jpg"] [unique_id "amNx_n5U_mzsMZ_2qklHBQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 10:46:30
(1 day ago)
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 06:46:24.807725 2026] [security2:error] [pid 3757462:tid 3757462] [client 47.236.96.46:59948] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||www.nrvoutdoors.com|F|4"] [data "EmailWolf"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "www.nrvoutdoors.com"] [uri "/2014 SEASON LOG/traditions-crockett-rifle-R26128101.jpg"] [unique_id "amNCgOOGxU0W3k0Xik99ZwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
filstal.org
2026-07-24 09:27:17
(1 day ago)
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. U ...
show more
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. UA: Mozilla/5.0 (MSIE 9.0; Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.79 Safari/537.36 Edge/14.14931
show less
Bad Web Bot
Web App Attack
Anonymous
2026-07-24 07:36:02
(1 day ago)
Malicious activity detected
Hacking
Web App Attack
๐ฆ๐บ
FireGuard Server
2026-07-24 06:25:05
(2 days ago)
Blocked by os-abuseipdb; 10 hits, proto=tcp, ports=443
Port Scan
Hacking
๐บ๐ธ
kosada.com
2026-07-24 03:52:15
(2 days ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-23 19:41:14
(2 days ago)
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 47.236.96.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 15:41:09.328828 2026] [security2:error] [pid 17280:tid 17300] [client 47.236.96.46:25690] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||nwnative.us|F|4"] [data "grub-client"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "nwnative.us"] [uri "/Trips/2025Fairbanks/20250123_144254.jpg"] [unique_id "amJuVQBaRgOmoW82sArJkQAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack