๐ฆ๐บ
paulshipley.com.au
2026-09-01 19:11:42
(12 hours ago)
[Wed Sep 02 05:11:40.841508 2026] [security2:error] [pid 281132] [client 119.8.41.86:38660] [client ...
show more
[Wed Sep 02 05:11:40.841508 2026] [security2:error] [pid 281132] [client 119.8.41.86:38660] [client 119.8.41.86] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/articles/random-thoughts/day-against-drm"] [unique_id "apcjbPREbdGHpa_xgzXJEAAAAA4"]
...
show less
Web App Attack
Anonymous
2026-09-01 18:24:47
(13 hours ago)
Automated report (2026-09-01T14:24:47-04:00). Spambot detected.
Blog Spam
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-09-01 13:08:31
(18 hours ago)
[01/Sep/2026:16:08:31 +0300] -- 119.8.41.86 Ban reason: User-Agent Java/
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-09-01 10:32:26
(21 hours ago)
[Tue Sep 01 20:32:25.154815 2026] [security2:error] [pid 241830] [client 119.8.41.86:13638] [client ...
show more
[Tue Sep 01 20:32:25.154815 2026] [security2:error] [pid 241830] [client 119.8.41.86:13638] [client 119.8.41.86] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "levellapromotions.com.au"] [uri "/product-category/technology/charging-cables-technology-2"] [unique_id "apapuaTcgXFjvzP8G_Pe_gAAAAI"]
...
show less
Web App Attack
๐ฌ๐ง
Bytemark
2026-09-01 00:28:45
(1 day ago)
119.8.41.86 - - [01/Sep/2026:01:28:44 +0100] "HEAD /?mode=terms&sid=dfd77eadc8e482555cd5c604aea1cf1e ...
show more
119.8.41.86 - - [01/Sep/2026:01:28:44 +0100] "HEAD /?mode=terms&sid=dfd77eadc8e482555cd5c604aea1cf1e HTTP/1.1" 200 6678 "-" "Java/1.8.0_322"
show less
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-08-31 21:08:19
(1 day ago)
[MonAug3123:08:11.7884372026][security2:error][pid230756:tid230970][client119.8.41.86:0]ModSecurity: ...
show more
[MonAug3123:08:11.7884372026][security2:error][pid230756:tid230970][client119.8.41.86:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.annunci-ticino.ch\"][uri\"/\"][unique_id\"apXtO_AIiGktVmiiJhGLegAAAE8\"]
show less
Hacking
Web App Attack
๐ญ๐บ
kranem
2026-08-31 18:00:19
(1 day ago)
Triggered Cloudflare WAF from HK.
Action taken: BLOCK
ASN: 136907 (HUAWEI CLOUDS)
Protocol: HTTP/1.1 ...
show more
Triggered Cloudflare WAF from HK.
Action taken: BLOCK
ASN: 136907 (HUAWEI CLOUDS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-08-31T16:29:29Z
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_5; Android) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3939.36 Safari/537.36 HuaweiCrawler
show less
Bad Web Bot
๐ซ๐ฎ
as211431.net
2026-08-31 13:48:19
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; Android) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.4921.6 Safari/537.36 HuaweiCrawler
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-08-31 07:53:01
(2 days ago)
Automated report (2026-08-31T03:53:01-04:00). Spambot detected.
Blog Spam
Bad Web Bot
๐ฆ๐บ
paulshipley.com.au
2026-08-31 05:55:16
(2 days ago)
[Mon Aug 31 15:55:16.083307 2026] [security2:error] [pid 70700] [client 119.8.41.86:35441] [client 1 ...
show more
[Mon Aug 31 15:55:16.083307 2026] [security2:error] [pid 70700] [client 119.8.41.86:35441] [client 119.8.41.86] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/articles/internet-filter/mandatory-isp-filtering"] [unique_id "apUXRM0qOiIqEuZGe--6NQAAAAU"]
...
show less
Web App Attack
Anonymous
2026-08-31 00:40:07
(2 days ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-08-30 22:47:33
(2 days ago)
[31/Aug/2026:01:47:33 +0300] -- 119.8.41.86 Ban reason: User-Agent Java/
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-30 15:22:46
(2 days ago)
[Mon Aug 31 01:22:45.173330 2026] [security2:error] [pid 925845] [client 119.8.41.86:32269] [client ...
show more
[Mon Aug 31 01:22:45.173330 2026] [security2:error] [pid 925845] [client 119.8.41.86:32269] [client 119.8.41.86] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/articles/random-thoughts/doctor-who-the-eleventh-hour"] [unique_id "apRKxUKirp9osAQFmbMWKgAAAAA"]
...
show less
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-30 15:01:14
(2 days ago)
[Mon Aug 31 01:01:14.034820 2026] [security2:error] [pid 921773] [client 119.8.41.86:28821] [client ...
show more
[Mon Aug 31 01:01:14.034820 2026] [security2:error] [pid 921773] [client 119.8.41.86:28821] [client 119.8.41.86] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "levellapromotions.com.au"] [uri "/product/lamy-logo-pencil-brushed-steel-tc-113796"] [unique_id "apRFunC7EgHp9DK8hHGdIQAAAAA"]
...
show less
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-30 12:44:42
(2 days ago)
[Sun Aug 30 22:44:41.993838 2026] [security2:error] [pid 914571] [client 119.8.41.86:50715] [client ...
show more
[Sun Aug 30 22:44:41.993838 2026] [security2:error] [pid 914571] [client 119.8.41.86:50715] [client 119.8.41.86] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/articles/i-like-it/html5-and-css3-transition-transformation-and-animation"] [unique_id "apQluUYfe3RGcP1hzdyITQAAAC4"]
...
show less
Web App Attack