๐บ๐ธ
lostswordfish.com
2026-09-14 16:38:03
(2 days ago)
Wordfence waf block on parsol
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-10 04:42:18
(6 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐ซ๐ท
Sklurk
2026-09-08 03:15:22
(1 week ago)
Web App Attack
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-04 01:06:10
(1 week ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
Anonymous
2026-09-03 21:12:36
(1 week ago)
2026-09-03T23:12:36.155875+02:00 polaris wp(bikeschool.co.za)[848423]: Authentication attempt for un ...
show more
2026-09-03T23:12:36.155875+02:00 polaris wp(bikeschool.co.za)[848423]: Authentication attempt for unknown user wertuslash from 104.207.44.227
...
show less
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2026-07-20 17:27:00
(1 month ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
Anonymous
2026-04-01 07:31:13
(5 months ago)
Forum/form spam
Web Spam
Anonymous
2026-03-13 00:05:39
(6 months ago)
Forum/form spam
Web Spam
๐บ๐ธ
oncord
2026-02-27 17:15:51
(6 months ago)
Form spam
Web Spam
๐ซ๐ท
mrcrassi
2026-02-03 21:26:44
(7 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST meth ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /wp-login.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-04 19:23:14
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 14:23:07.203574 2025] [security2:error] [pid 6764:tid 6764] [client 104.207.44.227:39889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whatifandwhynot.xyz"] [uri "/.env"] [unique_id "aTHfm8AASJlqCUIAaIDwaAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:24:40
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:24:26.030426 2025] [security2:error] [pid 17699:tid 17699] [client 104.207.44.227:60243] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.lsippell.com"] [uri "/.git/HEAD"] [unique_id "aSQkSnKselmEhh71i2014gAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:46:25
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:46:19.337954 2025] [security2:error] [pid 12729:tid 12729] [client 104.207.44.227:17975] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.esprit-caraibe.com"] [uri "/.git/HEAD"] [unique_id "aSQNS445uRrVijf4RHrXDQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:49:12
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:49:07.538876 2025] [security2:error] [pid 16994:tid 16994] [client 104.207.44.227:58409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.paguilar.com"] [uri "/.git/HEAD"] [unique_id "aSPjw_AGcaF-teE0D8wmQAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:30:19
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.44.227 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:30:11.058250 2025] [security2:error] [pid 23954:tid 23954] [client 104.207.44.227:53899] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.wb4jtb.net"] [uri "/.env"] [unique_id "aSPfU7NSAHwLTkxMg3cJDwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack