๐ซ๐ท
Sklurk
2026-06-02 02:24:53
(2 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-05-28 01:12:38
(3 weeks ago)
Web App Attack
Web App Attack
๐บ๐ธ
stechusa
2026-05-27 20:06:44
(3 weeks ago)
[Askari] | country=HK | Behavior: Targeting specific pages, URL template abuse, Outdated browser, Co ...
show more
[Askari] | country=HK | Behavior: Targeting specific pages, URL template abuse, Outdated browser, Concurrent page load during attack, No referrer on deep pages
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
stechusa
2026-05-27 20:06:44
(3 weeks ago)
ELEVATED_THREAT | country=HK | ASN=Tencent Building, Kejizhongyi Avenue | AbuseIPDB=39% | 15 IPs tar ...
show more
ELEVATED_THREAT | country=HK | ASN=Tencent Building, Kejizhongyi Avenue | AbuseIPDB=39% | 15 IPs targeting /brand.html | URL template shared by 8 IPs: /brand.html?bulb_shape=*&bulb_shape_type=*&bulb_type=*&mode=list&p=* | Facet request during elevated threat (facet_ratio=0.67, unique_ips=138)
show less
Bad Web Bot
DDoS Attack
๐ซ๐ท
Sklurk
2026-05-27 00:20:52
(3 weeks ago)
Web App Attack
Web App Attack
๐บ๐ธ
stechusa
2026-05-22 19:38:00
(3 weeks ago)
[Askari] | country=HK | ASN=Tencent Building, Kejizhongyi Avenue | Behavior: HTTP/1.1 over TLS, Targ ...
show more
[Askari] | country=HK | ASN=Tencent Building, Kejizhongyi Avenue | Behavior: HTTP/1.1 over TLS, Targeting specific pages, Outdated browser
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
stechusa
2026-05-22 19:38:00
(3 weeks ago)
country=HK | ASN=Tencent Building, Kejizhongyi Avenue | AbuseIPDB=39% | form_key NApw8YCx... shared ...
show more
country=HK | ASN=Tencent Building, Kejizhongyi Avenue | AbuseIPDB=39% | form_key NApw8YCx... shared by 2 IPs: 43.135.20.213, 196.96.201.93 | 403 on protected endpoint: /catalog/product_compare/add/product/40008/uenc/aHR0cHM6Ly93d3cubGlnaHRpbmcybGln (method=GET, ModSec blocked) | GET to POST-only endpoint: /wishlist/index/add/product/22997/form_key/TuBlCaXQyXXC70vq/ (status=403)
show less
Bad Web Bot
DDoS Attack
๐ซ๐ท
Sklurk
2026-05-19 06:22:41
(4 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-05-17 01:17:07
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-05-14 02:06:07
(1 month ago)
Web App Attack
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-05-06 17:48:29
(1 month ago)
Unidentified crawler ignoring robots.txt: 43.135.20.213 - - [06/May/2026:19:48:24 +0200] "GET /proto ...
show more
Unidentified crawler ignoring robots.txt: 43.135.20.213 - - [06/May/2026:19:48:24 +0200] "GET /protocol?id=rp_14_109&offset=900&seq=957 HTTP/1.1" 200 344147 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36" asn=132203 org="Shenzhen Tencent Computer Systems Company Limited"
43.135.20.213 - - [06/May/2026:19:48:24 +0200] "GET /protocol?id=be_18_68&offset=800&seq=803 HTTP/1.1" 200 344943 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/108.0.0.0 Safari/537.36" asn=132203 org="Shenzhen Tencent Computer Systems Company Limited"
43.135.20.213 - - [06/May/2026:19:48:29 +0200] "GET /protocol?id=mv_7_125¶graph=7456687&seq=71 HTTP/1.1" 302 5 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36" asn=132203 org="Shenzhen Tencent Computer Systems Company Limited"
...
show less
Bad Web Bot
๐จ๐ฆ
1gz
2026-05-04 06:08:03
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/bota/humb-jeten-25-vjecari-shqiptar-ne-nje-aksident-tragjik-ne-itali-kamioni-qe-drejtonte-u-perplas-ne-menyre-fatale-ne-rruge/668709/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.5249.119 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
Sklurk
2026-04-26 06:42:05
(1 month ago)
Web App Attack
Web App Attack
๐บ๐ธ
stechusa
2026-04-24 04:39:27
(1 month ago)
[Askari] | Behavior: Concurrent page load during attack, HTTP/1.1 over TLS, Rapid connection cycling ...
show more
[Askari] | Behavior: Concurrent page load during attack, HTTP/1.1 over TLS, Rapid connection cycling, Holding server worker, Excessive connections
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
stechusa
2026-04-24 04:39:26
(1 month ago)
ELEVATED_THREAT | 4 concurrent SYN_RECV connections (threshold=3) | 18 IPs targeting /brand.html | R ...
show more
ELEVATED_THREAT | 4 concurrent SYN_RECV connections (threshold=3) | 18 IPs targeting /brand.html | Recv-Q=1489 bytes on ESTABLISHED connection (threshold=1000)
show less
Bad Web Bot
DDoS Attack