๐ต๐น
Information Security
2026-08-18 19:07:45
(1 hour ago)
Web App Attack
Web App Attack
๐บ๐ธ
1gz
2026-08-16 10:44:45
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /anash/pronari
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ต๐น
Information Security
2026-08-16 01:29:47
(2 days ago)
Web App Attack
Web App Attack
๐บ๐ธ
1gz
2026-08-15 20:53:21
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/aleksandar
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-08-15 18:42:02
(3 days ago)
WEB attack
Brute-Force
๐บ๐ธ
1gz
2026-08-15 07:20:56
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/politike
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-11 14:38:37
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 47.79.201.212 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.201.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 10:38:30.740225 2026] [security2:error] [pid 2088:tid 2088] [client 47.79.201.212:38204] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fundingworkingcapital.com|F|2"] [data ".fundingworkingcapital.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fundingworkingcapital.com"] [uri "/tag/porn-hub-equivalent/www.fundingworkingcapital.com"] [unique_id "ansz5oGjw1nRV4cWUO1sjAAAAA0"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-08 10:04:30
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 47.79.201.212 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.201.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 08 06:04:26.425226 2026] [security2:error] [pid 851640:tid 851640] [client 47.79.201.212:16828] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.clayrivers.com|F|2"] [data ".clayrivers.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.clayrivers.com"] [uri "/never-give-up/www.clayrivers.com"] [unique_id "anb_Kq9UI9NUdt0ROVNEiAAAAAU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-08-07 13:21:07
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/all
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ฆ
1gz
2026-08-07 04:08:21
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kerko.php
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-31 14:25:49
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 47.79.201.212 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.201.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 10:25:43.312366 2026] [security2:error] [pid 6149:tid 6149] [client 47.79.201.212:25650] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||arsenalfordemocracy.com|F|2"] [data ".thedailyshow.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "arsenalfordemocracy.com"] [uri "/tag/glenn-beck/www.thedailyshow.com"] [unique_id "amywZ3dhBiYOgReBsMv5RgAAAAU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-07-31 04:05:50
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/kercenon-pronarin-e-nje-lokali-dhe-klientet-e-tij
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ฆ
1gz
2026-07-30 11:39:33
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/significant
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ฆ
1gz
2026-07-28 00:24:26
(3 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: CHALLENGE
Protocol: HTTP/1.1 (GET m ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/perqafime
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
AetherFox
2026-07-27 23:07:17
(3 weeks ago)
AetherFox VoidGuard detected: [Tue Jul 28 01:06:32.398282 2026] [authz_core:error] [pid 46426:tid 46 ...
show more
AetherFox VoidGuard detected: [Tue Jul 28 01:06:32.398282 2026] [authz_core:error] [pid 46426:tid 46450] [client 47.79.201.212:11884] AH01630: client denied by server configuration: proxy:https://45.88.108.231/view_filters_page.php, referer: https://www.google.com/
[Tue Jul 28 01:06:32.399753 2026] [authz_core:error] [pid 46426:tid 46450] [client 47.79.201.212:11884] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Tue Jul 28 01:06:54.776848 2026] [authz_core:error] [pid 46396:tid 46421] [client 47.79.201.212:16564] AH01630: client denied by server configuration: proxy:https://45.88.108.231/view_all_set.php, referer: https://www.google.com/
[Tue Jul 28 01:06:54.778137 2026] [authz_core:error] [pid 46396:tid 46421] [client 47.79.201.212:16564] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Tue Jul 28 01:07:17.342627 2026] [authz_core:error]
...
show less
Bad Web Bot
Web App Attack