π©πͺ
stinpriza
2026-04-06 09:04:45
(1 month ago)
Web App Attack
Web App Attack
π¦πΊ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
π©πͺ
kjaerulff
2026-03-17 15:54:39
(2 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
π©πͺ
Packets-Decreaser.NET
2025-12-29 14:02:07
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
π¦πΊ
oncord
2025-12-22 14:57:23
(5 months ago)
Form spam
Web Spam
π΅π±
sefinek.net
2025-12-22 03:50:44
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
octageeks.com
2025-12-18 05:06:54
(5 months ago)
Wordpress malicious attack:[octaxmlrpc]
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 04:30:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 23:30:12.382685 2025] [security2:error] [pid 10888:tid 10888] [client 104.207.35.74:26715] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.yacht-register-holland.com"] [uri "/.svn/wc.db"] [unique_id "aSaCVD2sTc6neNRNWCizfwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 03:40:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:40:41.301818 2025] [security2:error] [pid 3538473:tid 3538599] [client 104.207.35.74:53417] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ingeconsultcr.com"] [uri "/.git/HEAD"] [unique_id "aSZ2uYlw80WOF8zzHgOdJgAAAcI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 03:02:23
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:02:18.952925 2025] [security2:error] [pid 5294:tid 5294] [client 104.207.35.74:28173] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.oficinasydespachosmurcia.com"] [uri "/.env"] [unique_id "aSZtuqMKJ8jqBROBpo9K3wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 01:47:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:47:11.291846 2025] [security2:error] [pid 5179:tid 5179] [client 104.207.35.74:38121] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.truecontrarian.com"] [uri "/.svn/wc.db"] [unique_id "aSUKn1Ey0hRnLax815iw2QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 00:46:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:46:35.869148 2025] [security2:error] [pid 16348:tid 16348] [client 104.207.35.74:28879] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.juliajimmy.com"] [uri "/.env"] [unique_id "aST8azptm29-vCF0XoLdXwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:48:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:48:34.865178 2025] [security2:error] [pid 531:tid 531] [client 104.207.35.74:40653] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.stenbot.com"] [uri "/.env"] [unique_id "aSQb4lhm1BOupyyQuWirIAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-30 14:36:36
(7 months ago)
WordPress Brute Force
Brute-Force
π΅π±
sefinek.net
2025-10-28 23:18:47
(7 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot