๐ธ๐ฌ
mypatricks
2026-09-01 07:33:38
(3 weeks ago)
101.32.169.68 | Port: 12197 | DNS: 101.32.169.68 2026-09-01T15:33:36+08:00 Asia/Singapore | IPs res ...
show more
101.32.169.68 | Port: 12197 | DNS: 101.32.169.68 2026-09-01T15:33:36+08:00 Asia/Singapore | IPs res erved list | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /code/article/add-opencart-verifying-user-passwords-during-edit-password/?bdaceacabaafbc | Ref: https://xxxxxx/code/article/add-opencart-verifying-user-passwords-during-edit-password/?bdaceacabaafbc= | Country: SG/Singapore/+08:00 IP City: Singapore Windows a34296756e15d76f-NRT/Tokyo, Japan 1 hits/0 secs Browser 1
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
๐ฌ๐ท
setupgr
2026-08-29 10:58:19
(3 weeks ago)
(mod_security) mod_security (id:100011) triggered by 101.32.169.68 (SG/Singapore/-/Singapore/-/[AS13 ...
show more
(mod_security) mod_security (id:100011) triggered by 101.32.169.68 (SG/Singapore/-/Singapore/-/[AS132203 TENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Sat Aug 29 13:58:18.785900 2026] [security2:error] [pid 156892:tid 156917] [remote 101.32.169.68:60586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "CN" at GEO:COUNTRY_CODE. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "62"] [id "100011"] [msg "Traffic from CN/SG blocked for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/%CF%80%CF%81%CE%BF%CF%83%CF%86%CE%BF%CF%81%CE%AD%CF%82/page/2/"] [unique_id "apK7Sinzwn9qihpQGgPOuAAAFRc"]
show less
Port Scan
๐ธ๐ช
SkyDancer
2026-08-09 17:09:41
(1 month ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
๐จ๐ฆ
1gz
2026-08-04 09:04:05
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /lajme/bota/nagasaki-ne-alarm-per-reshje-intensive-autoritetet-kerkojne-evakuimin-e-380-mije-banoreve/894022/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-07-29 15:10:26
(1 month ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
Anonymous
2026-07-28 12:00:14
(1 month ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
Anonymous
2026-07-22 05:04:21
(2 months ago)
PAD: Bot_Add_Cart detected
Bad Web Bot
Anonymous
2026-07-18 14:17:24
(2 months ago)
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show more
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in thread-post.asp
show less
Exploited Host
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-07-16 15:22:33
(2 months ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
๐ซ๐ท
bigorre.org
2026-07-02 16:17:52
(2 months ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
๐ธ๐ฌ
mypatricks
2026-06-30 06:41:53
(2 months ago)
101.32.169.68 | Port: 10886 | DNS: 101.32.169.68 2026-06-30T14:41:52+08:00 Asia/Singapore | IPs res ...
show more
101.32.169.68 | Port: 10886 | DNS: 101.32.169.68 2026-06-30T14:41:52+08:00 Asia/Singapore | IPs res erved list | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /?bc32dce2fcfbcd3ffc=92&1772169807 | Ref: - | Country: SG/Singapore/+08:00 IP City: Singapore macOS a13b3006daecfd83-SIN/Singapore, Singapore 1 hits/0 secs Browser 2
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
๐ซ๐ท
bigorre.org
2026-06-25 16:59:34
(2 months ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
๐ธ๐ฌ
mypatricks
2026-06-20 05:17:47
(3 months ago)
101.32.169.68 | Port: 10906 | DNS: 101.32.169.68 2026-06-20T13:17:46+08:00 Asia/Singapore | IPs res ...
show more
101.32.169.68 | Port: 10906 | DNS: 101.32.169.68 2026-06-20T13:17:46+08:00 Asia/Singapore | IPs res erved list | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /?8cbfbc9caa99adfb | Ref: - | Country: SG/Singapore/+08:00 IP City: Singapore Windows a0e84f1b2da39ce2-SIN/Singapore, Singapore 1 hits/0 secs Browser 1
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
๐ธ๐ฌ
mypatricks
2026-06-15 09:23:34
(3 months ago)
101.32.169.68 | Port: 9671 | DNS: 101.32.169.68 2026-06-15T17:23:33+08:00 Asia/Singapore | IPs res e ...
show more
101.32.169.68 | Port: 9671 | DNS: 101.32.169.68 2026-06-15T17:23:33+08:00 Asia/Singapore | IPs res erved list | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /zh/%E5%B1%82%E5%8F%A0%E6%A0%B7%E5%BC%8F%E8%A1%A8/%E4%BD%BF%E7%94%A8-css-%E5%AE%9E%E7%8E%B0%E6%BB%9A%E5%8A%A8%E5%88%B0%E9%A1%B6%E9%83%A8/?efeec89cbfffa | Ref: - | Country: SG/Singapore/+08:00 IP City: Singapore Windows a0c08444ad57ce2b-SIN/Singapore, Singapore 1 hits/0 secs Browser 1
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-06-11 14:55:48
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 101.32.169.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 101.32.169.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 10:55:41.708181 2026] [security2:error] [pid 15020:tid 15107] [client 101.32.169.68:42826] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||charteredwealthmanager.aafm.us|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "charteredwealthmanager.aafm.us"] [uri "/http/charteredfinancialmanager.com"] [unique_id "airMbVd6K6166etFWuiOPQAAAcM"], referer: https://charteredwealthmanager.aafm.us/http//charteredfinancialmanager.com
show less
Brute-Force
Bad Web Bot
Web App Attack