๐ฉ๐ช
Vegascosmetics
2026-09-02 01:44:18
(1 day ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after locale-probe / error-handler fuzzing ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after locale-probe / error-handler fuzzing against ASP.NET shop. Evidence: LOCALE-PROBE: MissingSlash (/de17848Geral/ChangeCountry)
show less
Hacking
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-01 21:18:35
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: db.definitelynotahoneypot.xyz | URI: /.env | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
klaus_ph
2026-08-19 09:22:00
(2 weeks ago)
47.79.51.217 - - [19/Aug/2026:00:37:01 +0200] "GET /gnd/Record/1153148854/SMS?lng=ru HTTP/1.1" 200 1 ...
show more
47.79.51.217 - - [19/Aug/2026:00:37:01 +0200] "GET /gnd/Record/1153148854/SMS?lng=ru HTTP/1.1" 200 11487 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
๐ฉ๐ช
klaus_ph
2026-08-19 03:46:01
(2 weeks ago)
47.79.51.217 - - [18/Aug/2026:18:01:37 +0200] "GET /gnd/Record/171267982/Details?lng=tr HTTP/1.1" 20 ...
show more
47.79.51.217 - - [18/Aug/2026:18:01:37 +0200] "GET /gnd/Record/171267982/Details?lng=tr HTTP/1.1" 200 12856 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
๐น๐ท
neron
2026-08-11 21:06:48
(3 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐น๐ท
neron
2026-08-04 00:29:43
(4 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐ท๐บ
Mga Admin
2026-08-01 08:17:14
(1 month ago)
47.79.51.217 - - [01/Aug/2026:15:17:13 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs11160833 ...
show more
47.79.51.217 - - [01/Aug/2026:15:17:13 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs111608333 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs111608333" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ซ๐ท
Entalpi.net
2026-07-31 12:22:29
(1 month ago)
Repeated scrapping attempts on unallowed content and/or repeated tarpit hits
Bad Web Bot
๐ซ๐ท
Sklurk
2026-07-27 04:10:45
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-24 06:44:12
(1 month ago)
Web App Attack
Web App Attack
๐ท๐บ
Mga Admin
2026-07-21 21:22:49
(1 month ago)
47.79.51.217 - - [22/Jul/2026:04:22:47 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs57014251 ...
show more
47.79.51.217 - - [22/Jul/2026:04:22:47 +0700] "GET /data/associations?p=5e-8&r2=0.9&rs-id=rs57014251 HTTP/1.1" 404 67 "https://phelige.com/associations?p=5e-8&r2=0.9&rs-id=rs57014251" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-07-18 18:10:18
(1 month ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after suspicious activity. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ฎ๐น
A000Z
2026-07-16 12:52:14
(1 month ago)
Fail2Ban: 47.79.51.217 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 ...
show more
Fail2Ban: 47.79.51.217 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฉ๐ช
findlab
2026-07-16 10:05:03
(1 month ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-07-16 09:24:35
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /sitemapindex.xml
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot