Activity Trending Down
This IP hasn't received reports recently, which causes the score to decay.
IPv6 SLAAC Note
Public IPv6 addresses may implement the SLAAC
privacy extension. With SLAAC, the interface identifier is randomly generated. SLAAC also implements a
configurable time out, so that the original IPv6 interface addresses will be discarded in favor of a new
interface identifier.
This IP address has been reported a total of
15
times from
5 distinct
sources.
2a01:4f8:231:150f::2 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 11
reports;
Switzerland
with 1
report;
Chile
with 1
report.
The most common categories in these recent reports were:
Web App Attack
10
times;
Brute-Force
9
times;
Port Scan
9
times;
Bad Web Bot
5
times;
Hacking
2
times.
Old Reports
The most recent abuse report for this IP address is from
. It is possible that this IP is no
longer involved in abusive activities.
Triggered Cloudflare WAF (botFight) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET ...
show moreTriggered Cloudflare WAF (botFight) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (compatible)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show moreAsking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-13 01:02 UTC
show less
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show moreAsking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-11 23:58 UTC
show less
[TueSep0809:38:09.7208012026][security2:error][pid1284308:tid1284400][client2a01:4f8:231:150f::2:0]M ...
show more[TueSep0809:38:09.7208012026][security2:error][pid1284308:tid1284400][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"ilcartiglio.ch\"][uri\"/\"][unique_id\"ap-7YTsJNk1CKREDW4YeugAAAgY\"]
show less
[MonSep0705:03:27.0525732026][security2:error][pid3737099:tid3737171][client2a01:4f8:231:150f::2:0]M ...
show more[MonSep0705:03:27.0525732026][security2:error][pid3737099:tid3737171][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"safeoncloud.ch\"][uri\"/\"][unique_id\"ap4pfwp7ccrfXGCY0zjuXQAAAQE\"]
show less
[SunSep0605:10:56.9228892026][security2:error][pid2374515:tid2374589][client2a01:4f8:231:150f::2:0]M ...
show more[SunSep0605:10:56.9228892026][security2:error][pid2374515:tid2374589][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"morandi-trasporti.ch\"][uri\"/\"][unique_id\"apzZwJvZDldnhKvSCw5ezAAAAQY\"]
show less
[SatSep0510:42:40.1378162026][security2:error][pid1313032:tid1313070][client2a01:4f8:231:150f::2:0]M ...
show more[SatSep0510:42:40.1378162026][security2:error][pid1313032:tid1313070][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"cmsolution.ch\"][uri\"/\"][unique_id\"apvWAAL5BSCg2Gv-ig5tqgAAAEI\"]
show less
[FriSep0423:38:01.2103062026][security2:error][pid2359359:tid2359490][client2a01:4f8:231:150f::2:0]M ...
show more[FriSep0423:38:01.2103062026][security2:error][pid2359359:tid2359490][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"giuristifriburgo.ch\"][uri\"/\"][unique_id\"aps6OTWiMaloYiALqW152QAAAIQ\"]
show less
[SatAug2921:36:13.7008192026][security2:error][pid301334:tid301391][client2a01:4f8:231:150f::2:0]Mod ...
show more[SatAug2921:36:13.7008192026][security2:error][pid301334:tid301391][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"vg13.ch\"][uri\"/\"][unique_id\"apM0rfR0HsuaS1RdAgrIqwAAAFQ\"]
show less
[FriAug2803:50:49.1028472026][security2:error][pid1987477:tid1987540][client2a01:4f8:231:150f::2:0]M ...
show more[FriAug2803:50:49.1028472026][security2:error][pid1987477:tid1987540][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"farmaciaferrari.ch\"][uri\"/\"][unique_id\"apDpeZ7LRL-OO1PzJmf2ZAAAAII\"]
show less
[WedAug2602:09:17.9616852026][security2:error][pid3164938:tid3164988][client2a01:4f8:231:150f::2:0]M ...
show more[WedAug2602:09:17.9616852026][security2:error][pid3164938:tid3164988][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"eimeko.ch\"][uri\"/\"][unique_id\"ao4urSLVRdGi1XLe-7qNMQAAAE4\"]
show less
[SunAug2305:38:40.8719302026][security2:error][pid3317756:tid3317834][client2a01:4f8:231:150f::2:0]M ...
show more[SunAug2305:38:40.8719302026][security2:error][pid3317756:tid3317834][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"galardi.ch\"][uri\"/\"][unique_id\"aoprQFOuLSRZ1QsWMZktXAAAAJE\"]
show less
[SatAug1501:45:13.5550162026][security2:error][pid2319676:tid2319680][client2a01:4f8:231:150f::2:0]M ...
show more[SatAug1501:45:13.5550162026][security2:error][pid2319676:tid2319680][client2a01:4f8:231:150f::2:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"gmint.ch\"][uri\"/\"][unique_id\"an-oic5AS_anSW8QfduxSQAAAIE\"]
show less
Port Scan
Brute-Force
Web App Attack
Showing 1 to
15
of 15 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ