๐ช๐ธ
10dencehispahard SL
2026-01-26 07:30:08
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-01-21 20:08:44
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 15:08:36.794536 2026] [security2:error] [pid 20023:tid 20023] [client 104.207.41.64:16567] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ticmatopografiaeingenieria.com"] [uri "/.git/HEAD"] [unique_id "aXEyRPTfhzlzSB_zXeI2xAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-01-05 02:11:15
(5 months ago)
Probing websites for vulnerabilities
Web App Attack
๐ต๐ฑ
sefinek.net
2025-12-30 11:48:19
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Windows NT 10.0; WOW64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
fbarela
2025-12-29 00:00:02
(5 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
๐ฉ๐ช
ManagedStack
2025-12-28 16:00:02
(5 months ago)
Probing access to unauthorized locations
Hacking
Exploited Host
Web App Attack
๐ฎ๐น
VHosting
2025-12-24 13:25:09
(5 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:12:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:12:37.811625 2025] [security2:error] [pid 15453:tid 15453] [client 104.207.41.64:10235] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arabou.co"] [uri "/.svn/wc.db"] [unique_id "aSQFZbkzQo4pZRDMARmeswAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:11:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:10:51.534103 2025] [security2:error] [pid 4519:tid 4519] [client 104.207.41.64:60483] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alphaplanning.com"] [uri "/.git/HEAD"] [unique_id "aSP261_OLhboJDqx-Q70ewAAAGk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:58:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.64 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:58:25.849554 2025] [security2:error] [pid 309:tid 309] [client 104.207.41.64:11947] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aares2026.net"] [uri "/.git/HEAD"] [unique_id "aSPl8R4HcTzgdPnIoP4x8gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 06:48:14
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐ง๐ช
madeit
2025-11-04 17:43:15
(7 months ago)
Web App Attack
๐ซ๐ท
applemooz
2025-11-01 12:34:19
(7 months ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
Anonymous
2025-11-01 08:17:38
(7 months ago)
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.01 is noted in report ti ...
show more
Attempted brute force login to web vpn 12 time(s); last attempt for 2025.11.01 is noted in report timestamp
show less
Hacking
Brute-Force
๐ง๐ช
madeit
2025-10-30 09:21:34
(7 months ago)
Web App Attack