๐บ๐ธ
TPI-Abuse
2026-09-03 20:04:21
(1 hour ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:04:13.297503 2026] [security2:error] [pid 31636:tid 31636] [client 47.79.200.50:36894] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.spaceritual.net|F|2"] [data ".entertainment.directnic.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.spaceritual.net"] [uri "/jl.entertainment.directnic.com"] [unique_id "apnSvQLvDrKFhV7zoeKADQAAAAU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
jbcrn
2026-09-03 11:08:37
(10 hours ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /prediscovery-Bidens. User-Agent: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
show less
Bad Web Bot
Web App Attack
๐ณ๐ด
tmiland
2026-09-02 11:42:29
(1 day ago)
Detected 32 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 ...
show more
Detected 32 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 with 207166 total distributed connections; Logs: 47.79.200.50 - - [02/Sep/2026:00:03:01 +0200] "GET /preferences?referer=/watch?listen=true&v=C4fn-Ac5-K0 HTTP/1.1" 200 6379 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:03:29 +0200] "GET /hashtag/punjabbreaking HTTP/1.1" 200 7049 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:04:13 +0200] "GET /watch?listen=1&v=0HXEh-9KJOY HTTP/1.1" 200 7823 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:05:35 +0200] "GET /watch?listen=false&v=DFGosZSdLVw HTTP/1.1" 200 7630 "https://ww
show less
DDoS Attack
Bad Web Bot
Web App Attack
๐ณ๐ด
tmiland
2026-09-02 11:27:01
(1 day ago)
Detected 38 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 ...
show more
Detected 38 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 with 207157 total distributed connections; Logs: 47.79.200.50 - - [02/Sep/2026:00:03:01 +0200] "GET /preferences?referer=/watch?listen=true&v=C4fn-Ac5-K0 HTTP/1.1" 200 6379 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:03:29 +0200] "GET /hashtag/punjabbreaking HTTP/1.1" 200 7049 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:04:13 +0200] "GET /watch?listen=1&v=0HXEh-9KJOY HTTP/1.1" 200 7823 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:05:35 +0200] "GET /watch?listen=false&v=DFGosZSdLVw HTTP/1.1" 200 7630 "https://ww
show less
DDoS Attack
Bad Web Bot
Web App Attack
๐ณ๐ด
tmiland
2026-09-02 11:11:34
(1 day ago)
Detected 43 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 ...
show more
Detected 43 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 with 199441 total distributed connections; Logs: 47.79.200.50 - - [02/Sep/2026:00:03:01 +0200] "GET /preferences?referer=/watch?listen=true&v=C4fn-Ac5-K0 HTTP/1.1" 200 6379 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:03:29 +0200] "GET /hashtag/punjabbreaking HTTP/1.1" 200 7049 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:04:13 +0200] "GET /watch?listen=1&v=0HXEh-9KJOY HTTP/1.1" 200 7823 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:05:35 +0200] "GET /watch?listen=false&v=DFGosZSdLVw HTTP/1.1" 200 7630 "https://ww
show less
DDoS Attack
Bad Web Bot
Web App Attack
๐ณ๐ด
tmiland
2026-09-02 10:56:23
(1 day ago)
Detected 40 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 ...
show more
Detected 40 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 with 192283 total distributed connections; Logs: 47.79.200.50 - - [02/Sep/2026:00:03:01 +0200] "GET /preferences?referer=/watch?listen=true&v=C4fn-Ac5-K0 HTTP/1.1" 200 6379 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:03:29 +0200] "GET /hashtag/punjabbreaking HTTP/1.1" 200 7049 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:04:13 +0200] "GET /watch?listen=1&v=0HXEh-9KJOY HTTP/1.1" 200 7823 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:05:35 +0200] "GET /watch?listen=false&v=DFGosZSdLVw HTTP/1.1" 200 7630 "https://ww
show less
DDoS Attack
Bad Web Bot
Web App Attack
๐ณ๐ด
tmiland
2026-09-02 10:26:46
(1 day ago)
Detected 35 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 ...
show more
Detected 35 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.0.0.0 with 192276 total distributed connections; Logs: 47.79.200.50 - - [02/Sep/2026:00:03:01 +0200] "GET /preferences?referer=/watch?listen=true&v=C4fn-Ac5-K0 HTTP/1.1" 200 6379 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:03:29 +0200] "GET /hashtag/punjabbreaking HTTP/1.1" 200 7049 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:04:13 +0200] "GET /watch?listen=1&v=0HXEh-9KJOY HTTP/1.1" 200 7823 "https://www.google.com/" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36" 47.79.200.50 - - [02/Sep/2026:00:05:35 +0200] "GET /watch?listen=false&v=DFGosZSdLVw HTTP/1.1" 200 7630 "https://ww
show less
DDoS Attack
Bad Web Bot
Web App Attack
๐ณ๐ด
tmiland
2026-09-01 22:01:30
(1 day ago)
Detected 38 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.79.0. ...
show more
Detected 38 connections from 47.79.200.50 last 60 minutes.; 47.79.200.50 is part of network 47.79.0.0 with 29245 distributed connections; Logs:
show less
DDoS Attack
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-08-31 01:10:36
(3 days ago)
AetherFox VoidGuard detected: [Mon Aug 31 03:09:39.287811 2026] [authz_core:error] [pid 290619:tid 2 ...
show more
AetherFox VoidGuard detected: [Mon Aug 31 03:09:39.287811 2026] [authz_core:error] [pid 290619:tid 290666] [client 47.79.200.50:12938] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_filters_page.php, referer: https://www.google.com/
[Mon Aug 31 03:09:39.288016 2026] [authz_core:error] [pid 290619:tid 290666] [client 47.79.200.50:12938] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Mon Aug 31 03:09:39.512128 2026] [authz_core:error] [pid 290619:tid 290661] [client 47.79.200.50:12938] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Mon Aug 31 03:09:39.512357 2026] [authz_core:error] [pid 290619:tid 290661] [client 47.79.200.50:12938] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Mon Aug 31 03:10:36.666704 2026] [authz_core:err
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-08-30 17:02:47
(4 days ago)
AetherFox VoidGuard detected: [Sun Aug 30 19:01:57.124813 2026] [authz_core:error] [pid 274319:tid 2 ...
show more
AetherFox VoidGuard detected: [Sun Aug 30 19:01:57.124813 2026] [authz_core:error] [pid 274319:tid 274352] [client 47.79.200.50:62726] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_filters_page.php, referer: https://www.google.com/
[Sun Aug 30 19:01:58.236839 2026] [authz_core:error] [pid 274319:tid 274352] [client 47.79.200.50:62726] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sun Aug 30 19:02:02.878879 2026] [authz_core:error] [pid 274319:tid 274372] [client 47.79.200.50:47562] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Sun Aug 30 19:02:02.879102 2026] [authz_core:error] [pid 274319:tid 274372] [client 47.79.200.50:47562] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sun Aug 30 19:02:47.378740 2026] [authz_core:err
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
1gz
2026-08-30 14:03:10
(4 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kosove/palatova
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
AetherFox
2026-08-30 07:04:09
(4 days ago)
AetherFox VoidGuard detected: [Sun Aug 30 09:02:36.707981 2026] [authz_core:error] [pid 274320:tid 2 ...
show more
AetherFox VoidGuard detected: [Sun Aug 30 09:02:36.707981 2026] [authz_core:error] [pid 274320:tid 274339] [client 47.79.200.50:34534] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sun Aug 30 09:03:46.506466 2026] [authz_core:error] [pid 274319:tid 274357] [client 47.79.200.50:8556] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Sun Aug 30 09:03:46.507931 2026] [authz_core:error] [pid 274319:tid 274357] [client 47.79.200.50:8556] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sun Aug 30 09:04:09.324694 2026] [authz_core:error] [pid 274320:tid 274331] [client 47.79.200.50:19178] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Sun Aug 30 09:04:09.324910 2026] [authz_core:error] [pi
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-08-29 22:01:20
(4 days ago)
AetherFox VoidGuard detected: [Sun Aug 30 00:00:26.137439 2026] [authz_core:error] [pid 274320:tid 2 ...
show more
AetherFox VoidGuard detected: [Sun Aug 30 00:00:26.137439 2026] [authz_core:error] [pid 274320:tid 274340] [client 47.79.200.50:6292] AH01630: client denied by server configuration: proxy:https://[MASKED]/excel_xml_export.php, referer: https://www.google.com/
[Sun Aug 30 00:00:26.137647 2026] [authz_core:error] [pid 274320:tid 274340] [client 47.79.200.50:6292] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sun Aug 30 00:00:36.261164 2026] [authz_core:error] [pid 274320:tid 274341] [client 47.79.200.50:44656] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Sun Aug 30 00:00:36.262561 2026] [authz_core:error] [pid 274320:tid 274341] [client 47.79.200.50:44656] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sun Aug 30 00:01:20.441974 2026] [authz_core:error]
...
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
flaus
2026-08-29 18:00:34
(5 days ago)
$f2bV_matches
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
jbcrn
2026-08-29 16:01:17
(5 days ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /deflagration.ribbonback-spiciness. User-Agent: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
show less
Bad Web Bot
Web App Attack