๐ฉ๐ช
jbcrn
2026-08-25 20:04:36
(13 hours ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /deflagration.uncivilizable-Plynlymmon. User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36 Edg/132.0.0.0
show less
Bad Web Bot
Web App Attack
๐ต๐น
Information Security
2026-08-24 15:00:11
(1 day ago)
Web App Attack
Web App Attack
๐ฉ๐ช
jbcrn
2026-08-23 22:00:19
(2 days ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /feeless. User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-08-22 12:02:05
(3 days ago)
AetherFox VoidGuard detected: [Sat Aug 22 14:01:33.433141 2026] [authz_core:error] [pid 161957:tid 1 ...
show more
AetherFox VoidGuard detected: [Sat Aug 22 14:01:33.433141 2026] [authz_core:error] [pid 161957:tid 161974] [client 47.79.201.224:36392] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_filters_page.php, referer: https://www.google.com/
[Sat Aug 22 14:01:33.433378 2026] [authz_core:error] [pid 161957:tid 161974] [client 47.79.201.224:36392] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sat Aug 22 14:02:03.154616 2026] [authz_core:error] [pid 161956:tid 161989] [client 47.79.201.224:34500] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_filters_page.php, referer: https://www.google.com/
[Sat Aug 22 14:02:03.156497 2026] [authz_core:error] [pid 161956:tid 161989] [client 47.79.201.224:34500] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sat Aug 22 14:02:04.681855 2026] [authz
...
show less
Bad Web Bot
Web App Attack
๐ต๐น
Information Security
2026-08-22 11:02:53
(3 days ago)
Web App Attack
Web App Attack
๐ฉ๐ช
AetherFox
2026-08-22 02:02:23
(4 days ago)
AetherFox VoidGuard detected: [Sat Aug 22 04:01:48.694903 2026] [authz_core:error] [pid 161957:tid 1 ...
show more
AetherFox VoidGuard detected: [Sat Aug 22 04:01:48.694903 2026] [authz_core:error] [pid 161957:tid 161970] [client 47.79.201.224:23238] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_bug_page.php, referer: https://www.google.com/
[Sat Aug 22 04:01:48.697094 2026] [authz_core:error] [pid 161957:tid 161970] [client 47.79.201.224:23238] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sat Aug 22 04:01:56.614822 2026] [authz_core:error] [pid 161957:tid 161975] [client 47.79.201.224:23244] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Sat Aug 22 04:01:56.615053 2026] [authz_core:error] [pid 161957:tid 161975] [client 47.79.201.224:23244] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Sat Aug 22 04:02:22.943226 2026] [authz_core
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
AetherFox
2026-08-21 16:00:21
(4 days ago)
AetherFox VoidGuard detected: [Fri Aug 21 18:00:10.413690 2026] [authz_core:error] [pid 147572:tid 1 ...
show more
AetherFox VoidGuard detected: [Fri Aug 21 18:00:10.413690 2026] [authz_core:error] [pid 147572:tid 147596] [client 47.79.201.224:2914] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_filters_page.php, referer: https://www.google.com/
[Fri Aug 21 18:00:10.414010 2026] [authz_core:error] [pid 147572:tid 147596] [client 47.79.201.224:2914] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Fri Aug 21 18:00:14.479594 2026] [authz_core:error] [pid 147572:tid 147578] [client 47.79.201.224:2924] AH01630: client denied by server configuration: proxy:https://[MASKED]/view_all_set.php, referer: https://www.google.com/
[Fri Aug 21 18:00:14.479863 2026] [authz_core:error] [pid 147572:tid 147578] [client 47.79.201.224:2924] AH01630: client denied by server configuration: /var/www/ERRORpages/403.html, referer: https://www.google.com/
[Fri Aug 21 18:00:21.138169 2026] [authz_core:err
...
show less
Bad Web Bot
Web App Attack
๐ต๐น
Information Security
2026-08-20 19:00:39
(5 days ago)
Web App Attack
Web App Attack
Anonymous
2026-08-15 16:46:02
(1 week ago)
WEB attack
Brute-Force
๐บ๐ธ
1gz
2026-08-15 16:08:39
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/debora
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36 Edg/132.0.0.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
1gz
2026-08-15 03:24:51
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/ptolemaida
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-07 07:12:40
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 47.79.201.224 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.201.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 03:12:33.219188 2026] [security2:error] [pid 1487296:tid 1487296] [client 47.79.201.224:26226] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.havilahmalone.com|F|2"] [data ".havilahmalone.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.havilahmalone.com"] [uri "/www.havilahmalone.com"] [unique_id "anWFYUJhmLEY0SVo6ifJVQAAABA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-06 19:03:12
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 47.79.201.224 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.201.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 15:03:07.415663 2026] [security2:error] [pid 2450669:tid 2450669] [client 47.79.201.224:32266] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.clayrivers.com|F|2"] [data ".clayrivers.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.clayrivers.com"] [uri "/platform/www.clayrivers.com"] [unique_id "anTaa9TxB5xvw96xqQmHxAAAAAQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-02 14:27:13
(3 weeks ago)
(mod_security) mod_security (id:210730) triggered by 47.79.201.224 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.201.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 02 10:27:08.503558 2026] [security2:error] [pid 1871900:tid 1871900] [client 47.79.201.224:60528] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.cnwire.com|F|2"] [data ".cnwire.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.cnwire.com"] [uri "/www.cnwire.com"] [unique_id "am9TvKTtOFpQq0xADjko8AAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-07-31 04:17:48
(3 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/302
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot