๐ฉ๐ช
AetherFox
2026-08-21 17:01:44
(9 hours ago)
AetherFox VoidGuard detected: [Fri Aug 21 19:01:39.025045 2026] [authz_core:error] [pid 147572:tid 1 ...
show more
AetherFox VoidGuard detected: [Fri Aug 21 19:01:39.025045 2026] [authz_core:error] [pid 147572:tid 147592] [client 47.79.200.169:1464] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_filters_page.php, referer: https://www.google.com/
[Fri Aug 21 19:01:39.028662 2026] [authz_core:error] [pid 147572:tid 147592] [client 47.79.200.169:1464] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Fri Aug 21 19:01:43.040994 2026] [authz_core:error] [pid 147572:tid 147577] [client 47.79.200.169:1476] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Fri Aug 21 19:01:43.041254 2026] [authz_core:error] [pid 147572:tid 147577] [client 47.79.200.169:1476] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Fri Aug 21 19:01:43.858977 2026] [authz_core:err
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 09:07:05
(16 hours ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 05:07:00.362767 2026] [security2:error] [pid 22397:tid 22397] [client 47.79.200.169:43190] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.brunswickcemeteries.org|F|2"] [data ".virginians.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.brunswickcemeteries.org"] [uri "/HTML/www.Virginians.com"] [unique_id "aogVNOo13wsq7zWCdxLbQQAAAAM"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐น
Information Security
2026-08-21 01:00:33
(1 day ago)
Web App Attack
Web App Attack
๐บ๐ธ
1gz
2026-08-17 13:50:12
(4 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /english/opposition
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
filstal.org
2026-08-16 23:41:36
(5 days ago)
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. U ...
show more
Automated bot: spoofed/impossible user-agent, web scraping or automated request patterns detected. UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
1gz
2026-08-16 13:34:03
(5 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kosove/koci
UA: Mozilla/5.0 (Linux; arm_64; Android 14; SM-A346E) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.6723.1012 YaSearchBrowser/24.125.1 BroPP/1.0 YaSearchApp/24.125.1 webOmni SA/3 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
1gz
2026-08-15 19:17:45
(6 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/dinamo
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
1gz
2026-08-14 12:39:19
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-12 03:30:56
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 23:30:48.298915 2026] [security2:error] [pid 3505105:tid 3505109] [client 47.79.200.169:61674] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.newtrendmag.org|F|2"] [data ".freesamialarian.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.newtrendmag.org"] [uri "/www.freesamialarian.com"] [unique_id "anvo6ONOUxkae2xgmTaB3AAAAAI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-08-11 11:11:02
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /showbiz/robert-aliaj-shperthen-ndaj-mimoza-ahmetit-u-shit-per-leke/921705
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-07 11:19:12
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 07:19:07.038783 2026] [security2:error] [pid 802923:tid 802923] [client 47.79.200.169:52516] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.tulsatvmemories.com|F|2"] [data ".losttulsa.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.tulsatvmemories.com"] [uri "/www.losttulsa.com"] [unique_id "anW_K_BA7N0dYx7o0ugY2gAAAAI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-06 00:07:04
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 05 20:06:58.525478 2026] [security2:error] [pid 3075451:tid 3075451] [client 47.79.200.169:58442] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||misomayo.com|F|2"] [data ".molliestones.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "misomayo.com"] [uri "/www.molliestones.com"] [unique_id "anPQIhtIHSXy2dZ4zz2crwAAAAc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
IRT@Unisi
2026-08-01 19:11:10
(2 weeks ago)
Multiple web server 400 error codes from same source ip.
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-31 06:21:50
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 02:21:46.195556 2026] [security2:error] [pid 186798:tid 186798] [client 47.79.200.169:64674] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lertap5.com|F|2"] [data ".spss.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lertap5.com"] [uri "/HTMLHelp/Lrtp59HTML/www.spss.com"] [unique_id "amw--sGfn2IAVHqW7gsjVwAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-07-31 05:04:16
(3 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/bba
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot