Anonymous
2026-10-07 05:33:38
(22 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
jbcrn
2026-10-06 04:32:02
(1 day ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Google, ruleset: big-tech. Requested ho ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Google, ruleset: big-tech. Requested honeypot path: /deflagration.redstart/beadily/Gottlieb/oliguresis-phlebograph/trichechodont-Hu/moneymonger-conventionality/Cactus-rolleywayman/outwork/colonoscope/degradedness-blooey-Waltonian.svg. User-Agent: Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.8010.52 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)
show less
Bad Web Bot
Web App Attack
Anonymous
2026-10-06 02:31:13
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ธ๐ช
Juha Jurvanen
2026-10-05 22:01:13
(2 days ago)
Blocked by Scantide Guard on custom:ce9a4bb4dda8493eb1dcc4b93e3487ab. Rule: 5 event(s) in correlatio ...
show more
Blocked by Scantide Guard on custom:ce9a4bb4dda8493eb1dcc4b93e3487ab. Rule: 5 event(s) in correlation window.
show less
Brute-Force
๐ฎ๐น
Inartis
2026-10-03 18:18:25
(4 days ago)
[Sat Oct 03 20:07:57.465574 2026] [autoindex:error] [pid 361923:tid 361923] [client 66.249.74.225:63 ...
show more
[Sat Oct 03 20:07:57.465574 2026] [autoindex:error] [pid 361923:tid 361923] [client 66.249.74.225:63881] AH01276: Cannot serve directory /home/shop.viniborin.it/public_html/wp-content/themes/Divi/includes/builder/images/: No matching DirectoryIndex (index.php,index.php4,index.php5,index.htm,index.html) found, and server-generated directory index forbidden by Options directive
[Sat Oct 03 20:18:21.438782 2026] [autoindex:error] [pid 361678:tid 361678] [client 66.249.74.225:59412] AH01276: Cannot serve directory /home/shop.viniborin.it/public_html/wp-content/themes/Divi/images/: No matching DirectoryIndex (index.php,index.php4,index.php5,index.htm,index.html) found, and server-generated directory index forbidden by Options directive
[Sat Oct 03 20:18:25.015968 2026] [autoindex:error] [pid 361678:tid 361678] [client 66.249.74.225:59412] AH01276: Cannot serve directory /home/shop.viniborin.it/public_html/wp-content/themes/Divi/includes/builder/frontend-builder/assets/vendors/: No matching
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 06:57:30
(4 days ago)
(mod_security) mod_security (id:211120) triggered by 66.249.74.225 (crawl-66-249-74-225.googlebot.co ...
show more
(mod_security) mod_security (id:211120) triggered by 66.249.74.225 (crawl-66-249-74-225.googlebot.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 02:57:24.773107 2026] [security2:error] [pid 28720:tid 28720] [client 66.249.74.225:50971] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||www.nancyscafeandcatering.com|F|2"] [data "Matched Data: http://hivuwui0.click/htvlvh.php? found within REQUEST_FILENAME: /wp-content/themes/eatery/nav.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nancyscafeandcatering.com"] [uri "/wp-content/themes/eatery/nav.php"] [unique_id "asCnVAjluK3r7yuuS00ZQAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ผ
tyebstx
2026-10-02 06:18:51
(5 days ago)
Wazuh Alert Evidence: 2026/10/02 06:18:48 [error] 1014060#1014060: *59881 access forbidden by rule, ...
show more
Wazuh Alert Evidence: 2026/10/02 06:18:48 [error] 1014060#1014060: *59881 access forbidden by rule, client: 66.249.74.225, server: ms1.bitstreetx.info, request: "GET /robots.txt HTTP/1.1", host: "ms1.bitstreetx.info"
show less
Web App Attack
๐ฉ๐ช
jbcrn
2026-09-30 20:19:57
(1 week ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Google, ruleset: big-tech. Requested ho ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Google, ruleset: big-tech. Requested honeypot path: /deflagration.preburlesque-purfler/laryngotomy-retare/Israeliteship-uncapacitate/bubonalgia-preperceptive/thresher/. User-Agent: Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.8010.52 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
javierin
2026-09-30 11:31:19
(1 week ago)
66.249.74.225 - sandbox.javierin.com - - [30/Sep/2026:11:31:19 +0000] "GET / HTTP/1.1" 301 162 "-" " ...
show more
66.249.74.225 - sandbox.javierin.com - - [30/Sep/2026:11:31:19 +0000] "GET / HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.84 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
66.249.74.225 - sandbox.javierin.com - - [30/Sep/2026:11:31:19 +0000] "GET / HTTP/1.1" 301 162 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Web App Attack
Hacking
๐ซ๐ท
mrcrassi
2026-09-19 05:44:36
(2 weeks ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET meth ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /portas-de-enrolar-automaticas-garen/
UA: GoogleOther
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-09-11 10:21:14
(3 weeks ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ซ๐ท
mrcrassi
2026-09-11 01:14:46
(3 weeks ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET meth ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /cursos-e-treinamentos/
UA: Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.8010.36 Mobile Safari/537.36 (compatible; GoogleOther)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ต๐น
Subnet Shadow Specter
2026-09-07 14:28:57
(1 month ago)
[Security] [Category: Bot Masquerading] FCrDNS mismatch detected. [IP Address]: 66.249.74.225 claime ...
show more
[Security] [Category: Bot Masquerading] FCrDNS mismatch detected. [IP Address]: 66.249.74.225 claimed a fake identity but failed forward-confirmed reverse DNS verification. Automated scraping via spoofed User-Agent `compatible; Googlebot/2.1`. [Action]: IP block initiated. [User-Agent]: Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.7922.173 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) [IoA Datetime]: 2026-09-07 15:28:57 UTC +1.
show less
Port Scan
Hacking
Spoofing
Bad Web Bot
Web App Attack
๐ง๐ช
yoel
2026-09-05 15:47:13
(1 month ago)
Sibyl Cortex SOC: Unauthorized website cloning / scraping attempt detected.
Hacking
Bad Web Bot
Web App Attack
๐ต๐น
Subnet Shadow Specter
2026-09-05 09:37:35
(1 month ago)
[Security] [Category: Bot Masquerading] FCrDNS mismatch detected. [IP Address]: 66.249.74.225 claime ...
show more
[Security] [Category: Bot Masquerading] FCrDNS mismatch detected. [IP Address]: 66.249.74.225 claimed a fake identity but failed forward-confirmed reverse DNS verification. Automated scraping via spoofed User-Agent `compatible; Googlebot/2.1`. [Action]: IP block initiated. [User-Agent]: Mozilla/5.0 (Linux; Android 6.0.1; Nexus 5X Build/MMB29P) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.7922.173 Mobile Safari/537.36 (compatible; Googlebot/2.1; +http://www.google.com/bot.html) [IoA Datetime]: 2026-09-05 10:37:35 UTC +1.
show less
Port Scan
Hacking
Spoofing
Bad Web Bot
Web App Attack