๐บ๐ธ
JustMeHere
2026-10-02 22:51:09
(6 hours ago)
[Fri Oct 02 18:51:03.304235 2026] [security2:error] [pid 795:tid 943] [client 157.230.43.185:35286] ...
show more
[Fri Oct 02 18:51:03.304235 2026] [security2:error] [pid 795:tid 943] [client 157.230.43.185:35286] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 13)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "yorknation.com"] [uri "/.env.old"] [unique_id "asA1V5fzjXxaE2RosqmA9wAAAFc"]
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-02 18:36:43
(10 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
ut-addicted.com
2026-10-02 18:26:08
(10 hours ago)
\[02/Oct/2026:20:25:15 +0200\] ar-3CRmpIZ1-ARUN4hGctgAAANI 157.230.43.185 45090 78.46.187.162 443
\[ ...
show more
\[02/Oct/2026:20:25:15 +0200\] ar-3CRmpIZ1-ARUN4hGctgAAANI 157.230.43.185 45090 78.46.187.162 443
\[02/Oct/2026:20:25:43 +0200\] ar-3JRmpIZ1-ARUN4hGcvAAAANY 157.230.43.185 34620 78.46.187.162 443
\[02/Oct/2026:20:26:06 +0200\] ar-3PBmpIZ1-ARUN4hGcvgAAAMI 157.230.43.185 50364 78.46.187.162 443
show less
Brute-Force
Web App Attack
Anonymous
2026-10-02 12:56:00
(16 hours ago)
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
todix
2026-10-02 12:53:27
(16 hours ago)
Wordpress brute force or spam attempt from 157.230.43.185
Brute-Force
๐ต๐ฑ
nfsec.pl
2026-10-02 08:39:39
(20 hours ago)
157.230.43.185 - - [02/Oct/2026:08:39:17 +0000] "GET /403.php HTTP/1.1" 403 8055 "https://www.nfsec. ...
show more
157.230.43.185 - - [02/Oct/2026:08:39:17 +0000] "GET /403.php HTTP/1.1" 403 8055 "https://www.nfsec.pl/root/%2eenv" "Mozilla/5.0 (iPhone; CPU iPhone OS 18_2 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.2 Mobile/15E148 Safari/605.1.15"
157.230.43.185 - - [02/Oct/2026:08:39:23 +0000] "GET /403.php HTTP/1.1" 403 8041 "https://www.nfsec.pl/live/.env" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0"
157.230.43.185 - - [02/Oct/2026:08:39:23 +0000] "GET /403.php HTTP/1.1" 403 8043 "https://www.nfsec.pl/debug/pprof/profile" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 Edg/131.0.0.0"
157.230.43.185 - - [02/Oct/2026:08:39:23 +0000] "GET /403.php HTTP/1.1" 403 8034 "https://www.nfsec.pl/debug/default/view?panel=profiling" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safar
...
show less
Web App Attack
Exploited Host
๐ฎ๐ฑ
spd.co.il
2026-10-02 00:02:43
(1 day ago)
Web application attack detected
Hacking
Web App Attack
๐ธ๐ช
SkyDancer
2026-10-01 21:38:32
(1 day ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
๐ซ๐ท
Batz
2026-10-01 21:09:16
(1 day ago)
[157.230.43.185] Multiple FTP BruteForce Attack
FTP Brute-Force
Hacking
Brute-Force
Port Scan
๐ฌ๐ง
consul.to
2026-10-01 09:10:33
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
1gz
2026-10-01 07:07:55
(1 day ago)
Triggered Cloudflare WAF (firewallManaged) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET meth ...
show more
Triggered Cloudflare WAF (firewallManaged) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /%77%70-%63%6f%6e%66%69%67.%70%68%70%7e
UA: Mozilla/5.0 (Linux; Android 14; SM-S928B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-09-30 23:39:31
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ฟ๐ฆ
vanderhost
2026-09-30 23:13:56
(2 days ago)
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /composer.lock via rule: ...
show more
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /composer.lock via rule: /composer.lock
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
ut-addicted.com
2026-09-30 22:01:59
(2 days ago)
\[01/Oct/2026:00:01:56 +0200\] ar2G1ProfkuSxjPVM-7u4QAAAFg 157.230.43.185 45826 78.46.187.162 443
\[ ...
show more
\[01/Oct/2026:00:01:56 +0200\] ar2G1ProfkuSxjPVM-7u4QAAAFg 157.230.43.185 45826 78.46.187.162 443
\[01/Oct/2026:00:01:56 +0200\] ar2G1F6B5pw-bYabIP0DKAAAAIQ 157.230.43.185 45314 78.46.187.162 443
\[01/Oct/2026:00:01:56 +0200\] ar2G1F6B5pw-bYabIP0DKQAAAIk 157.230.43.185 45216 78.46.187.162 443
show less
Brute-Force
Web App Attack
๐จ๐ฆ
DRI
2026-09-30 21:22:49
(2 days ago)
Web attack/Malicious activity detected
Web App Attack