๐ช๐ธ
el-brujo
2026-08-29 05:43:01
(49 minutes ago)
Cloudflare WAF: Request Path: /.env Request Query: Host: api.elhacker.net userAgent: Mozilla/5.0 (c ...
show more
Cloudflare WAF: Request Path: /.env Request Query: Host: api.elhacker.net userAgent: Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/bot) Action: block Source: firewallManaged ASN Description: Amazon.com, Inc. Country: US Method: GET Timestamp: 2026-08-29T05:43:01Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB.
show less
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
macrob
2026-08-29 05:01:03
(1 hour ago)
2026/08/29 05:00:46 [error] 4017415#4017415: *532304404 access forbidden by rule, client: 3.149.240. ...
show more
2026/08/29 05:00:46 [error] 4017415#4017415: *532304404 access forbidden by rule, client: 3.149.240.66, server: binixo.pl, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "binixo.pl"
2026/08/29 05:00:46 [error] 4017411#4017411: *532300779 access forbidden by rule, client: 3.149.240.66, server: binixo.pl, request: "GET /.vite/manifest.json HTTP/2.0", host: "binixo.pl"
2026/08/29 05:01:01 [error] 4017411#4017411: *532304359 access forbidden by rule, client: 3.149.240.66, server: binixo.pl, request: "GET /admin/login HTTP/2.0", host: "binixo.pl"
...
show less
Web App Attack
๐ซ๐ฎ
as211431.net
2026-08-29 04:27:05
(2 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/bot)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฎ๐น
CoreTech srl
2026-08-29 02:25:48
(4 hours ago)
[DC: IP:151.1.252.27] ntopng alert: blacklisted_server_contact
Hacking
Anonymous
2026-08-28 23:17:49
(7 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Back ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Backup file probing, Cloud secrets probing, Directory traversal
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-08-28 20:49:12
(9 hours ago)
CrowdSec abuse IP report (host SRV-2) Scenario: crowdsecurity/http-probing
Hacking
๐ฉ๐ช
macrob
2026-08-28 20:20:59
(10 hours ago)
2026/08/28 20:20:48 [error] 3672837#3672837: *531283786 access forbidden by rule, client: 3.149.240. ...
show more
2026/08/28 20:20:48 [error] 3672837#3672837: *531283786 access forbidden by rule, client: 3.149.240.66, server: binixo.lk, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "www.binixo.lk"
2026/08/28 20:20:49 [error] 3672837#3672837: *531283794 access forbidden by rule, client: 3.149.240.66, server: binixo.lk, request: "GET /.vite/manifest.json HTTP/2.0", host: "www.binixo.lk"
2026/08/28 20:20:57 [error] 3672837#3672837: *531283790 access forbidden by rule, client: 3.149.240.66, server: binixo.lk, request: "GET /admin/login HTTP/2.0", host: "www.binixo.lk"
...
show less
Web App Attack
Anonymous
2026-08-28 19:56:24
(10 hours ago)
PSCSERV WPSCAN 3.149.240.66
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-08-28 17:56:40
(12 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possi ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possible exploited host). Evidence: AttackPattern: /wp-json (Match: /wp-json)
show less
Hacking
Exploited Host
Web App Attack
๐ฉ๐ช
TheDjRider
2026-08-28 17:42:51
(12 hours ago)
CrowdSec detected Web application reconnaissance. Scenario: crowdsecurity/http-probing. Automatic ba ...
show more
CrowdSec detected Web application reconnaissance. Scenario: crowdsecurity/http-probing. Automatic ban triggered. Detection time (UTC): 2026-08-28T17:42:43.327687634Z. Context: http_status=404
show less
Web App Attack
๐ช๐ธ
librebit
2026-08-28 16:16:06
(14 hours ago)
Brute force
Brute-Force
๐ง๐ช
Ivo Vynckier
2026-08-28 15:19:00
(15 hours ago)
3.149.240.66 - - [27/Aug/2026:22:29:37 +0200] "GET /.hermes/config.yaml HTTP/2.0" 404 2310 "-" "Mozi ...
show more
3.149.240.66 - - [27/Aug/2026:22:29:37 +0200] "GET /.hermes/config.yaml HTTP/2.0" 404 2310 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user"
3.149.240.66 - - [27/Aug/2026:22:29:37 +0200] "GET /.continue/config.json HTTP/2.0" 404 2310 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user"
3.149.240.66 - - [27/Aug/2026:22:29:37 +0200] "GET /.codex/config.toml HTTP/2.0" 404 2310 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user"
show less
Web App Attack
๐ท๐ด
clauss
2026-08-28 13:27:29
(17 hours ago)
3.149.240.66 - - [28/Aug/2026:16:27:28 +0300] "GET /.env.example HTTP/2.0" 404 36 "-" "Mozilla/5.0 ( ...
show more
3.149.240.66 - - [28/Aug/2026:16:27:28 +0300] "GET /.env.example HTTP/2.0" 404 36 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/bot)"
3.149.240.66 - - [28/Aug/2026:16:27:29 +0300] "GET /.env.production HTTP/2.0" 404 36 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/bot)"
...
show less
Web App Attack
Anonymous
2026-08-28 12:21:35
(18 hours ago)
Portscan: TCP/8080 (7x), TCP/8443 (7x), TCP/80, TCP/443
Port Scan
๐ฉ๐ช
BlueWire Hosting
2026-08-28 12:01:36
(18 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack