π³π±
i-turnradio.nl
2026-03-12 17:57:39
(3 months ago)
2026-03-12 18:57:39 (CET) ~ Blocked by abusescan risk assessment
Web App Attack
π«π·
masterguru
2026-03-08 17:41:11
(3 months ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 102.129.234.18 (US/United States/-): ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 102.129.234.18 (US/United States/-): 1 in the last 3600 secs (0-193)
show less
Hacking
π©πͺ
HandyTreff.de
2026-03-06 05:17:53
(3 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -51.065 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -51.065 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.89
show less
Web App Attack
Bad Web Bot
πΊπΈ
bigscoots.com
2025-11-30 21:12:07
(6 months ago)
(smtpauth) Failed SMTP AUTH login from 102.129.234.18 (US/United States/-): 5 in the last 3600 secs; ...
show more
(smtpauth) Failed SMTP AUTH login from 102.129.234.18 (US/United States/-): 5 in the last 3600 secs; Ports: 25,465,587; Direction: 0; Trigger: LF_SMTPAUTH; Logs: 2025-11-30 16:11:31 dovecot_plain authenticator failed for ([10.15.18.25]) [102.129.234.18]:8441: 535 Incorrect authentication data ([email protected] )
2025-11-30 16:11:37 dovecot_login authenticator failed for ([10.15.18.25]) [102.129.234.18]:8441: 535 Incorrect authentication data ([email protected] )
2025-11-30 16:11:44 dovecot_plain authenticator failed for ([10.15.18.25]) [102.129.234.18]:15536: 535 Incorrect authentication data ([email protected] )
2025-11-30 16:11:46 dovecot_login authenticator failed for ([10.15.18.25]) [102.129.234.18]:15536: 535 Incorrect authentication data ([email protected] )
2025-11-30 16:12:07 dovecot_plain authenticator failed for ([10.15.18.25]) [102.129.234.18]:50816: 535 Incorrect authentication data ([email protected] )
show less
Brute-Force
SSH
π±π»
garmtech.com
2025-11-30 21:11:04
(6 months ago)
Multiple SASL authentication failures.
Brute-Force
π«π·
α΄Κα΄
2025-07-28 05:23:26
(10 months ago)
Triggered Cloudflare WAF (l7ddos) from US.
ASN: 174 (COGENT-174)
Protocol: HTTP/2 (GET method)
UA: M ...
show more
Triggered Cloudflare WAF (l7ddos) from US.
ASN: 174 (COGENT-174)
Protocol: HTTP/2 (GET method)
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
π©πͺ
stalker.to
2025-05-22 04:20:19
(1 year ago)
Datacenter Proxy
Web Spam
π©πͺ
stalker.to
2025-05-21 18:05:19
(1 year ago)
Datacenter Proxy
Web Spam
π©πͺ
stalker.to
2025-05-21 16:17:19
(1 year ago)
Datacenter Proxy
Web Spam
π©πͺ
www.Examensfragen.de
2025-03-25 12:35:32
(1 year ago)
Web Spam
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-03-21 20:49:51
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 21 16:49:43.592066 2025] [security2:error] [pid 15487:tid 15487] [client 102.129.234.18:63985] [client 102.129.234.18] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4starpromotions.com"] [uri "/.env"] [unique_id "Z93Q51YgubDP3dpCxF4LUAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-03-21 19:26:33
(1 year ago)
Bot / scanning and/or hacking attempts: GET /.env HTTP/1.1, GET / HTTP/1.1
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2025-03-21 19:22:51
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 21 15:22:48.024205 2025] [security2:error] [pid 3908019:tid 3908019] [client 102.129.234.18:65442] [client 102.129.234.18] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackriverarc.org"] [uri "/.env"] [unique_id "Z928iGb3mOo4-wK4KPWxnwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-03-21 18:47:29
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 102.129.234.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 102.129.234.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 21 14:47:24.879580 2025] [security2:error] [pid 650368:tid 650368] [client 102.129.234.18:61754] [client 102.129.234.18] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vpatech.com"] [uri "/.env"] [unique_id "Z920PFj5Zzs1XmGXyLam1QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
on-com
2025-03-21 15:11:21
(1 year ago)
URL scan
Brute-Force
Web App Attack