๐จ๐ฆ
Tanados
2026-08-31 04:56:31
(12 hours ago)
Blocked by UFW [5000/tcp]
Source port: 60598
TTL: 53
Packet length: 60
TOS: 0x00
This report was ge ...
show more
Blocked by UFW [5000/tcp]
Source port: 60598
TTL: 53
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฟ๐ฆ
conure.sh
2026-08-31 03:51:30
(13 hours ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 3s
Web App Attack
๐บ๐ธ
Rip
2026-08-31 03:45:32
(13 hours ago)
Remote Command Execution - Unix Shell Expression Found in URI
Web App Attack
๐ฌ๐ง
noise.agency
2026-08-31 03:26:36
(13 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.125.196.235 (US/United States/235.19 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.125.196.235 (US/United States/235.196.125.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
kosada.com
2026-08-31 03:25:53
(13 hours ago)
Web vulnerability probing: /.git/HEAD (bogus vhost/SNI)
Web App Attack
๐ฉ๐ช
PTScreens
2026-08-31 02:15:40
(14 hours ago)
CrowdSec: http-crawl-non_statics - 78 event(s).
Bad Web Bot
๐บ๐ธ
jormaster3k
2026-08-31 00:17:20
(16 hours ago)
Attack against Apache (too many 404s)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 12:09:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.125.196.235 (235.196.125.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.125.196.235 (235.196.125.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 08:09:01.089027 2026] [security2:error] [pid 23847:tid 23847] [client 34.125.196.235:20668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.196"] [uri "/static../.env"] [unique_id "apQdXU9gWHAppjfQtLh8JAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
1gz
2026-08-30 10:44:00
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
Protocol: HTTP/1.1 (GET m ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /script.js
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ช๐ธ
masterguru
2026-08-30 09:10:17
(1 day ago)
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "bytespider" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐ณ๐ฟ
Antinson
2026-08-30 08:53:53
(1 day ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ฆ๐บ
paulshipley.com.au
2026-08-30 07:53:51
(1 day ago)
[Sun Aug 30 17:53:50.467508 2026] [security2:error] [pid 891020] [client 34.125.196.235:1130] [clien ...
show more
[Sun Aug 30 17:53:50.467508 2026] [security2:error] [pid 891020] [client 34.125.196.235:1130] [client 34.125.196.235] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.com.au"] [uri "/static../.env"] [unique_id "apPhjpR9L4s4TlKfCiYtEAAAABA"], referer: https://13.54.104.103:443/static../.env
...
show less
Web App Attack
๐บ๐ธ
ratcarcher-labs
2026-08-30 07:12:26
(1 day ago)
[Ratcarcher Labs/MutantShield honeypot CTI] actor=hybrid vector=path_traversal risk=95 attacks=1253 ...
show more
[Ratcarcher Labs/MutantShield honeypot CTI] actor=hybrid vector=path_traversal risk=95 attacks=1253 depth=4 node=node-ap-south canary=no human_score=50 agentic=60 cc=US asn=Google LLC | Data provided by Ratcarcher Labs ยท https://ratcarcher-labs.com ยท docs https://api.ratcarcher-labs.com/api/v1/public/docs
show less
Web App Attack
Hacking
๐บ๐ธ
gu-alvareza
2026-08-30 05:05:23
(1 day ago)
Vite.server.fs.deny.raw.Arbitrary.File.Read
Hacking
๐บ๐ธ
NXTwoThou
2026-08-30 02:12:49
(1 day ago)
166.203
Web App Attack