๐ธ๐ช
Esko
2026-06-12 18:12:30
(1 day ago)
104.207.45.255 - - [12/Jun/2026:18:12:30 +0000] "GET /news-sitemap.xml HTTP/1.1" 488 0 "-" "Mozilla/ ...
show more
104.207.45.255 - - [12/Jun/2026:18:12:30 +0000] "GET /news-sitemap.xml HTTP/1.1" 488 0 "-" "Mozilla/5.0"
show less
Web App Attack
Anonymous
2026-04-30 23:51:43
(1 month ago)
Forum/form spam
Web Spam
Anonymous
2026-02-14 10:11:50
(3 months ago)
Forum/form spam
Web Spam
Anonymous
2026-02-09 21:55:55
(4 months ago)
104.207.45.255 - - [09/Feb/2026:21:55:51 +0000] "GET /admin/.env HTTP/1.1" 302 493 "-" "Mozilla/5.0 ...
show more
104.207.45.255 - - [09/Feb/2026:21:55:51 +0000] "GET /admin/.env HTTP/1.1" 302 493 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 21:10:38
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 16:10:30.004349 2026] [security2:error] [pid 5966:tid 5966] [client 104.207.45.255:46273] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gapanda.com"] [uri "/v2/.git/config"] [unique_id "aYpNRiU31mCkQrGW9hcHzQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 20:07:12
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 15:06:53.120628 2026] [security2:error] [pid 9830:tid 9830] [client 104.207.45.255:44823] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "galaxyretro.com"] [uri "/.git/config"] [unique_id "aYo-Xeb8UDWMmmIx-UshkgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 19:47:36
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 14:47:28.063096 2026] [security2:error] [pid 717735:tid 717767] [client 104.207.45.255:58315] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gafm.org"] [uri "/.env"] [unique_id "aYo50Fe2saaLoPBOZVo6mQAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 18:56:07
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 13:56:03.641070 2026] [security2:error] [pid 19159:tid 19159] [client 104.207.45.255:48657] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fydelitybags.com"] [uri "/api/.git/config"] [unique_id "aYotw_iRjlWaID8EDXiUxAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 07:56:56
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.45.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 02:56:50.454723 2026] [security2:error] [pid 7441:tid 7441] [client 104.207.45.255:23451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fwa51.com"] [uri "/.env.local"] [unique_id "aYmTQnSP3WSLM6V7VcSiGAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-02-03 01:15:05
(4 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ซ๐ท
mrcrassi
2026-01-31 07:08:15
(4 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST meth ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /wp-login.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ช๐ธ
10dencehispahard SL
2026-01-29 07:03:14
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐ง๐ช
taivas.nl
2026-01-23 20:32:11
(4 months ago)
Wordpress_xmlrpc_attack
Bad Web Bot
๐ฉ๐ช
iNetWorker
2026-01-20 00:44:31
(4 months ago)
trolling for resource vulnerabilities
Web App Attack
Anonymous
2026-01-09 03:17:50
(5 months ago)
Forum/form spam
Web Spam