The user agent string "bushbaby/2025.2.2" appears to be a non-standard client identifier with severa

Unrecognized Client Identification - Not associated with any known major browsers (Chrome, Firefox, Safari, etc.) - Doesn't match common web crawlers/search engines (Googlebot, Bingbot, etc.) Suspicious Characteristics - Version number "2025.2.2"/"2025.2.1" uses future dating (current date is 2025-02-28), a common tactic in malicious user agents - Generic name "bushbaby" doesn't correspond to any known legitimate software projects Potential Threat Indicators - Matches patterns observed in: Web scrapers attempting to avoid detection Malware command-and-control communications Automated attack tools
13 Replies
Jey
JeyOP2mo ago
Credential stuffing attacks Vulnerability scanning Data scraping operations
Walshy
Walshy2mo ago
the user agent is fine, that's us. not sure where that link is from or the relation but please never send clickable links for alleged malicious content
Jey
JeyOP2mo ago
thats on cloudflare
Walshy
Walshy2mo ago
ok?
Jey
JeyOP2mo ago
its phishing site
Walshy
Walshy2mo ago
we proxy around 20% of the web
Jey
JeyOP2mo ago
not gonna remove?
Walshy
Walshy2mo ago
if you believe it's phishing, you can report it ?abuse
SuperHelpflare
SuperHelpflare2mo ago
If you feel that a site is engaging in illegal or inappropriate activities, you can submit an abuse report at https://abuse.cloudflare.com/. The Trust and Safety team will review the details and reply if appropriate. You can also report the site to your relevant local authorities. Reports cannot be filed via Discord or with individual employees or Champs.
Jey
JeyOP2mo ago
no brave detected
Walshy
Walshy2mo ago
please report to the Trust & Safety team if you believe it's malicious.
Jey
JeyOP2mo ago
No description
Walshy
Walshy2mo ago
This is all i can tell you.

Did you find this page helpful?