Anonymous
2026-04-05 08:42:22
(2 months ago)
Forum/form spam
Web Spam
๐ซ๐ฎ
000rosiu
2026-02-11 17:07:00
(4 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 200373 (DREI-K-TECH-GMBH ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 200373 (DREI-K-TECH-GMBH)
Protocol: HTTP/1.1 (GET method)
Endpoint: /site/.git/config
Timestamp: 2026-02-11T17:03:16Z
Ray ID: 9cc56b3248f499cb
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36
Report generated by Cloudflare-WAF-To-AbuseIPDB:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-10 16:11:01
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 11:10:56.127783 2026] [security2:error] [pid 21045:tid 21059] [client 104.207.35.123:22771] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "12am.us"] [uri "/test/.git/config"] [unique_id "aYtYkEbhlAcrdkcO_sPb1wAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:11:07
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:11:00.382433 2026] [security2:error] [pid 19302:tid 19302] [client 104.207.35.123:50693] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kinkycouple4u.com"] [uri "/.env.save"] [unique_id "aYqhxF54-6ldps081OawugAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 00:50:11
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 19:50:04.772744 2026] [security2:error] [pid 20069:tid 20069] [client 104.207.35.123:17475] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "humaclub.com"] [uri "/.env.save"] [unique_id "aYqAvHRFSDu5Cxdc7HsN_QAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 22:02:03
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:01:55.277797 2026] [security2:error] [pid 651:tid 651] [client 104.207.35.123:56893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "katherinehowell.us"] [uri "/.env.staging"] [unique_id "aYpZUxZCmWLH3O8rVsu_NwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
relianoid.com
2026-01-26 22:36:05
(4 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
Anonymous
2026-01-10 03:11:26
(5 months ago)
Forum/form spam
Web Spam
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:55
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-12-15 06:27:47
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 19:34:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 14:33:56.772123 2025] [security2:error] [pid 414:tid 414] [client 104.207.35.123:35067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hogfiddlesandsuch.com"] [uri "/.svn/wc.db"] [unique_id "aS8_JENgIB_6rB1ODEbWMwAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
OceanTreasure
2025-12-02 19:25:04
(6 months ago)
tcp/443; Probing for exposed /.env dotfiles: "GET /.env" @ 2025-12-02T19:20:37Z [proxy]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 08:27:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:27:32.640518 2025] [security2:error] [pid 424357:tid 424526] [client 104.207.35.123:53203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "debeneesse.com"] [uri "/.env"] [unique_id "aS6i9EjGR0gyNky4Ba_4ogAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:37:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:37:23.713223 2025] [security2:error] [pid 1655:tid 1655] [client 104.207.35.123:34405] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "histbase.com"] [uri "/.svn/wc.db"] [unique_id "aS5tAyOIr94k4uecPcQ4awAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-28 13:11:49
(6 months ago)
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.28 is noted in report ti ...
show more
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.28 is noted in report timestamp
show less
Hacking
Brute-Force