๐บ๐ธ
Charlesiv
2026-09-03 00:15:30
(2 hours ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corpora ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
ASN: 8075 (Microsoft Corporation)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-09-02T23:56:46Z
Ray ID: a35074048a64b628
UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)
show less
Bad Web Bot
๐ช๐ธ
librebit
2026-09-02 10:58:05
(15 hours ago)
Brute force
Brute-Force
๐ฌ๐ง
andypiper
2026-09-02 01:03:16
(1 day ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ฉ๐ช
Lino Project
2026-09-02 00:10:28
(1 day ago)
74.7.242.17 - - [02/Sep/2026:02:10:25 +0200] "GET /xmlrpc.php?rsd HTTP/2.0" 403 280 "https://www.tir ...
show more
74.7.242.17 - - [02/Sep/2026:02:10:25 +0200] "GET /xmlrpc.php?rsd HTTP/2.0" 403 280 "https://www.tiraunporco.it/blog/" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 07:12:12
(1 day ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.17 (US/United States/-): 2 i ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.242.17 (US/United States/-): 2 in the last 3600 secs (0-196)
show less
Hacking
๐ฌ๐ง
pinguin
2026-09-01 06:54:27
(1 day ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-31 06:21:50
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 74.7.242.17 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 74.7.242.17 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:21:42.636241 2026] [security2:error] [pid 3919:tid 3919] [client 74.7.242.17:38262] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.clossglobal.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.clossglobal.com"] [uri "/Solutions/wp-json/wp/v2/users/1"] [unique_id "apUddmVAXFCzvy-os0kjAAAAAAs"], referer: https://www.clossglobal.com/Solutions/author/admin/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-31 03:48:39
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ฆ๐บ
aranguren.org
2026-08-29 06:12:04
(4 days ago)
74.7.242.17 - - [29/Aug/2026:16:11:24 +1000] "GET /?target=network.bitcoin HTTP/2.0" 200 8474 "https ...
show more
74.7.242.17 - - [29/Aug/2026:16:11:24 +1000] "GET /?target=network.bitcoin HTTP/2.0" 200 8474 "https://smokeping.aranguren.org/?target=network" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)"
74.7.242.17 - - [29/Aug/2026:16:11:51 +1000] "GET /?displaymode=n;start=2026-08-29%2013:11;end=now;target=network.bitcoin HTTP/2.0" 200 8542 "https://smokeping.aranguren.org/?target=network.bitcoin" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)"
74.7.242.17 - - [29/Aug/2026:16:12:03 +1000] "GET /?displaymode=n;start=2025-07-25%2016:11;end=now;target=network.bitcoin HTTP/2.0" 200 8542 "https://smokeping.aranguren.org/?target=network.bitcoin" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)"
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-29 05:53:34
(4 days ago)
Excessive multi-domain requests
Brute-Force
๐ต๐ฑ
Budyn
2026-08-22 18:35:40
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: ldap.budyn.ovh | URI: /backup.sql | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
jbcrn
2026-08-21 19:25:44
(1 week ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Request ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Requested honeypot path: /deflagration.tolylene/gestening-unprevented/gravidity/story/bridebowl/unpredicated/crapulent/pulsojet/news/reeming-hebdomadary/musketproof-epixylous/rhizocorm/upridge/petroleous-Squali/comment/unfitly/pepperidge/library-forestine/ticklely/diluvion/agomensin/blurbist/striper/radicated/recounsel/swanmark/rappage/glaciomarine-rainy/clinkerer/un/quondamship-comradery/bisinuation-Saumur/coppersmith-balden/dichromasy/blader-dysacousis/blunge-locational/braguette/melomaniac/ref/unmutualized/katsup-versicular/undescript-stipuliform/headmistressship-acquisitiveness/inexpert/traily/beshake/zemmi/recap/obit-malik/lemma/shoeless-dealerdom/denigrator/sura/exclusive/uncudgelled/equilibrize-unpawn/sicilicum/santimi/wireworker-aition/Karst/preinherit/brucite-surreption/birdikin/falconry
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-20 18:01:31
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: cache.teddypot.tech | URI: /backup.sql | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
bmino.pl
2026-08-20 15:40:30
(1 week ago)
Autoban IP(2): 74.7.242.17 - Hostname: Microsoft Corporation - City: Atlanta - Region: Georgia - Cou ...
show more
Autoban IP(2): 74.7.242.17 - Hostname: Microsoft Corporation - City: Atlanta - Region: Georgia - Country: United States - Location: - Organization: Cloud - failed attempts.
show less
Bad Web Bot
๐ง๐ช
taivas.nl
2026-08-20 04:33:10
(1 week ago)
Many_bad_calls
Web App Attack