๐ฉ๐ช
Vegascosmetics
2026-08-21 11:33:46
(2 days ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nest ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nesting / CPU-drain risk). Evidence: High Priority: %25252F
show less
Hacking
Exploited Host
Web App Attack
๐ฉ๐ช
klaus_ph
2026-08-18 21:09:48
(5 days ago)
47.79.11.150 - - [18/Aug/2026:15:12:34 +0200] "GET /gnd/Record/142481580/Description?lng=hi HTTP/1.1 ...
show more
47.79.11.150 - - [18/Aug/2026:15:12:34 +0200] "GET /gnd/Record/142481580/Description?lng=hi HTTP/1.1" 200 13344 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
๐ฉ๐ช
filstal.org
2026-08-10 01:42:09
(2 weeks ago)
Evasive bot: rapid User-Agent switching (6 UAs, 6 hits, short time window)
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-07-27 04:23:02
(4 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-25 11:49:56
(4 weeks ago)
Web App Attack
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-07-24 03:00:53
(1 month ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nest ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nesting / CPU-drain risk). Evidence: DEEP ATTACK: Recursive currentUrl nesting detected
show less
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
FreeMyIP
2026-07-16 10:07:33
(1 month ago)
Automated fail2ban report: web application attack / scanning for exploitable paths.
Bad Web Bot
Web App Attack
๐ท๐บ
Mga Admin
2026-07-10 15:48:33
(1 month ago)
47.79.11.150 - - [10/Jul/2026:22:48:32 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs1936497 ...
show more
47.79.11.150 - - [10/Jul/2026:22:48:32 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs1936497 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs1936497" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ท๐บ
Mga Admin
2026-07-09 10:28:09
(1 month ago)
47.79.11.150 - - [09/Jul/2026:17:28:08 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs11339497 ...
show more
47.79.11.150 - - [09/Jul/2026:17:28:08 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs113394971 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs113394971" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ซ๐ท
demomodule
2026-07-03 00:19:08
(1 month ago)
PrestaShop Security Module: nested/encoded redirect parameter abuse on "back" (occurrences=10)
Web App Attack
๐บ๐ธ
kosada.com
2026-06-17 00:09:13
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
Anonymous
2026-06-16 15:15:07
(2 months ago)
Large-scale coordinated botnet (200+k IPs). Attacker: mikhail-smirnov-79830323 (LinkedIn/profile ID) ...
show more
Large-scale coordinated botnet (200+k IPs). Attacker: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (Explicitly identified himself as enemy a week before attack began) | Attack Signature Blocked: /wishlist/index/add/product/11998/form_key/fZMCci09jhCq1ryG/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 | (Magento Site)
show less
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐น
A000Z
2026-06-16 08:04:43
(2 months ago)
Fail2Ban: 47.79.11.150 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 ...
show more
Fail2Ban: 47.79.11.150 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
show less
Bad Web Bot
๐จ๐ฆ
1gz
2026-06-15 00:46:45
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /lajme/dosja-5d-protesta-e-opozites-para-bashkise-se-tiranes-kerkohet-largimi-i-veliajt/735768/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-06-15 00:16:38
(2 months ago)
WEB attack
Brute-Force