Anonymous
2026-09-02 14:54:42
(25 minutes ago)
Unauthorized access (443/tcp/https)
Port Scan
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-09-02 14:48:42
(31 minutes ago)
Possible Unicode character bypass detected. Pattern match "(?i)\\\\x5cu (920540-stl2-14)
Hacking
๐ซ๐ท
mrcrassi
2026-09-02 14:17:50
(1 hour ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST met ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-09-02 14:14:57
(1 hour ago)
[Wed Sep 02 14:14:55.887043 2026] [authz_core:error] [pid 1262614:tid 1262614] [client 3.227.248.201 ...
show more
[Wed Sep 02 14:14:55.887043 2026] [authz_core:error] [pid 1262614:tid 1262614] [client 3.227.248.201:38502] AH01630: client denied by server configuration: /var/www/shop.gassycat.be/htdocs/, referer: https://cdn.shop.gassycat.be/
[Wed Sep 02 14:14:56.006871 2026] [authz_core:error] [pid 1262614:tid 1262614] [client 3.227.248.201:38502] AH01630: client denied by server configuration: /var/www/shop.gassycat.be/htdocs/, referer: https://cdn.shop.gassycat.be/
[Wed Sep 02 14:14:56.184164 2026] [authz_core:error] [pid 1262614:tid 1262614] [client 3.227.248.201:38502] AH01630: client denied by server configuration: /var/www/shop.gassycat.be/htdocs/, referer: https://cdn.shop.gassycat.be/
[Wed Sep 02 14:14:56.344479 2026] [authz_core:error] [pid 1262614:tid 1262614] [client 3.227.248.201:38502] AH01630: client denied by server configuration: /var/www/shop.gassycat.be/htdocs/, referer: https://cdn.shop.gassycat.be/
[Wed Sep 02 14:14:56.555319 2026] [authz_core:error] [pid 1262614:tid 1262614] [
...
show less
Brute-Force
๐ฉ๐ช
bescared
2026-09-02 14:06:29
(1 hour ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
๐จ๐ท
Klicks
2026-09-02 13:56:00
(1 hour ago)
Request URL: https://beta.1.com:443/default.aspx
Request path: /default.aspx
User ho ...
show more
Request URL: https://beta.1.com:443/default.aspx
Request path: /default.aspx
User host address: 3.227.248.201
show less
Web App Attack
Web Spam
Anonymous
2026-09-02 13:45:19
(1 hour ago)
POST / HTTP/1.1
Port Scan
Hacking
Bad Web Bot
๐ฉ๐ช
loebas
2026-09-02 13:41:38
(1 hour ago)
[4xx]Probing for non existant files, or client not authorized
Hacking
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2026-09-02 13:31:19
(1 hour ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: / | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ต๐ฑ
mscode.pl
2026-09-02 13:17:27
(2 hours ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
ASN: 14618 (Amazon.com, Inc. ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
ASN: 14618 (Amazon.com, Inc.)
Protocol: HTTP/1.1 (POST method)
Zone: backup1.mscode.pl
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
๐จ๐ฟ
ddw
2026-09-02 13:12:27
(2 hours ago)
ModSecurity detection - Rules: 949110(Inbound Anomaly Score Exceeded (Total Score: 55))
Web App Attack
๐จ๐ญ
dalslab ltd
2026-09-02 12:59:45
(2 hours ago)
[02/Sep/2026:14:59:43 +0200] - 403 403 - POST https auth.dalslab.com "/" [Client 3.227.248.201] [Len ...
show more
[02/Sep/2026:14:59:43 +0200] - 403 403 - POST https auth.dalslab.com "/" [Client 3.227.248.201] [Length 748] [Gzip -] [Sent-to 10.1.1.240] "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36" "https://auth.dalslab.com/"
[02/Sep/2026:14:59:43 +0200] - 403 403 - POST https auth.dalslab.com "/" [Client 3.227.248.201] [Length 748] [Gzip -] [Sent-to 10.1.1.240] "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36" "https://auth.dalslab.com/"
[02/Sep/2026:14:59:44 +0200] - 403 403 - POST https auth.dalslab.com "/" [Client 3.227.248.201] [Length 748] [Gzip -] [Sent-to 10.1.1.240] "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36" "https://auth.dalslab.com/"
[02/Sep/2026:14:59:44 +0200] - 403 403 - POST https auth.dalslab.com "/" [Client 3.227.248.201] [Length 748] [Gzip -] [Sent-to 10.1.1.240] "Mozilla/5.0
...
show less
Web Spam
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
Francisco Vallejo
2026-09-02 12:57:42
(2 hours ago)
[Wed Sep 02 14:57:41.457516 2026] [authz_core:error] [pid 1073298:tid 133721852208832] [client 3.227 ...
show more
[Wed Sep 02 14:57:41.457516 2026] [authz_core:error] [pid 1073298:tid 133721852208832] [client 3.227.248.201:22614] AH01630: client denied by server configuration: proxy:http://localhost:9000/, referer: https://audio.franvallejo.es/
[Wed Sep 02 14:57:41.611347 2026] [authz_core:error] [pid 1073298:tid 133722095466176] [client 3.227.248.201:22614] AH01630: client denied by server configuration: proxy:http://localhost:9000/, referer: https://audio.franvallejo.es/
[Wed Sep 02 14:57:41.722360 2026] [authz_core:error] [pid 1073298:tid 133722640729792] [client 3.227.248.201:22614] AH01630: client denied by server configuration: proxy:http://localhost:9000/, referer: https://audio.franvallejo.es/
[Wed Sep 02 14:57:41.830541 2026] [authz_core:error] [pid 1073298:tid 133721969641152] [client 3.227.248.201:22614] AH01630: client denied by server configuration: proxy:http://localhost:9000/, referer: https://audio.franvallejo.es/
[Wed Sep 02 14:57:42.073859 2026] [authz_core:error] [pid 1073298:ti
...
show less
Brute-Force
SSH
Anonymous
2026-09-02 12:48:13
(2 hours ago)
apache vulnerability scan
Web App Attack
๐ฉ๐ฐ
ScamAware
2026-09-02 12:03:27
(3 hours ago)
Detected by Cloudflare Security Events via WordPress automation. Detection: bad_bot_scanner (Bad bot ...
show more
Detected by Cloudflare Security Events via WordPress automation. Detection: bad_bot_scanner (Bad bot / scanner behavior). Hits from same IP in last 60 minutes: 10. Unique request paths counted internally: 1. Cloudflare action: managed_challenge. Cloudflare source: botFight.
show less
Bad Web Bot