Anonymous
2026-03-22 09:22:47
(2 months ago)
Forum/form spam
Web Spam
๐ฎ๐น
LTM
2026-02-21 07:20:01
(3 months ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
windowsforum
2026-02-19 23:26:33
(3 months ago)
Spam bot registration: triggers=timing, js_challenge, inv_honeypot, pow_fail, url, password_confirm, ...
show more
Spam bot registration: triggers=timing, js_challenge, inv_honeypot, pow_fail, url, password_confirm, username=MeghanNmz8
show less
Web Spam
Bad Web Bot
Anonymous
2026-01-30 00:15:10
(4 months ago)
Forum/form spam
Web Spam
๐ช๐ธ
10dencehispahard SL
2026-01-26 07:20:44
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐ต๐ฑ
sefinek.net
2025-12-26 15:25:29
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Edg/114.0.1264.71
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฎ๐น
VHosting
2025-12-23 11:24:08
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-25 04:57:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:57:12.107723 2025] [security2:error] [pid 786:tid 786] [client 104.167.25.227:11903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.oxfordgliding.com"] [uri "/.git/HEAD"] [unique_id "aSU3KCegyW0MrGO3r4zH7QAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:08:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:08:02.895473 2025] [security2:error] [pid 26157:tid 26157] [client 104.167.25.227:51303] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.ohanameetup.party"] [uri "/.git/HEAD"] [unique_id "aSUrokMlf-BZJ4wNJtvBiAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:49:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:49:02.797310 2025] [security2:error] [pid 32765:tid 32765] [client 104.167.25.227:11731] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.foreverweddingnapkins.com"] [uri "/.git/HEAD"] [unique_id "aSUnLmWgfyjHAVT7Z2W0SAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:27:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:27:30.662734 2025] [security2:error] [pid 29076:tid 29076] [client 104.167.25.227:21371] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.avrknives.com"] [uri "/.svn/wc.db"] [unique_id "aSUUEiZZ9_ioOD6iS1tkPQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:16:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:16:49.275890 2025] [security2:error] [pid 30509:tid 30509] [client 104.167.25.227:57053] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cinemasky.net"] [uri "/.svn/wc.db"] [unique_id "aSUDgVr1RJmoJO2gUTKWzwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:27:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:27:19.116798 2025] [security2:error] [pid 13943:tid 14042] [client 104.167.25.227:25287] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.certifiedprojectmanager.eu"] [uri "/.env"] [unique_id "aSQI1-pgfj-qx9CvqmSeyAAAAg4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:37:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.25.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:37:15.252518 2025] [security2:error] [pid 28731:tid 28731] [client 104.167.25.227:27247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oceandrivebeach.net"] [uri "/.svn/wc.db"] [unique_id "aSP9GyOQQ_UV7zSH2XgcDwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-19 12:18:41
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.19 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.19 is noted in report timestamp
show less
Hacking
Brute-Force