๐ซ๐ท
mrcrassi
2026-04-21 07:11:38
(4 months ago)
Triggered Cloudflare WAF (botFight) from SG.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET ...
show more
Triggered Cloudflare WAF (botFight) from SG.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /portas
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-04 06:06:41
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 47.79.204.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.204.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 02:06:34.470869 2026] [security2:error] [pid 10199:tid 10222] [client 47.79.204.148:9390] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||aafm.us|F|2"] [data ".royalbusinesssociety.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "aafm.us"] [uri "/www.RoyalBusinessSociety.com"] [unique_id "adCqaqlPbFl3G9UiWzJ1HwAAAJQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
gui-ying233
2026-03-25 03:24:28
(5 months ago)
Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Sa ...
show more
Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-03-21 00:02:12
(5 months ago)
Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Sa ...
show more
Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Mobile Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
ersei.net
2026-01-15 17:12:48
(7 months ago)
Nonstop scanning with no cooldown or respect for 429.
Bad Web Bot
๐ฎ๐น
VHosting
2026-01-08 11:36:22
(7 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐บ๐ธ
kosada.com
2026-01-06 11:06:15
(8 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2025-12-27 10:20:09
(8 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
ersei.net
2025-12-14 15:11:21
(8 months ago)
Nonstop scanning with no cooldown or respect for 429.
Bad Web Bot
๐จ๐ฆ
1gz
2025-12-13 02:22:44
(8 months ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/2-10-milion-leke
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
Sklurk
2025-12-08 06:00:26
(9 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
ersei.net
2025-12-07 18:11:48
(9 months ago)
Nonstop scanning with no cooldown or respect for 429.
Bad Web Bot
๐ซ๐ท
Sklurk
2025-12-04 13:28:43
(9 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-22 07:25:04
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 47.79.204.148 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.204.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 22 02:24:58.510204 2025] [security2:error] [pid 1850:tid 1850] [client 47.79.204.148:13724] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.borzois.com|F|2"] [data ".borzois.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.borzois.com"] [uri "/silkenswift/www.borzois.com"] [unique_id "aSFlSuMkEeu-z1RJ7wDiwQAAABg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-10-27 04:11:20
(10 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot