๐บ๐ธ
TPI-Abuse
2025-12-28 02:50:16
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 21:50:12.807162 2025] [security2:error] [pid 16289:tid 16289] [client 104.207.52.125:10291] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dancingmountainsbrewing.com"] [uri "/.git/HEAD"] [unique_id "aVCa5FYcQpZ9bUPYi9GwcQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 23:45:10
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 18:45:06.027199 2025] [security2:error] [pid 5260:tid 5260] [client 104.207.52.125:24179] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnsoncityjudo.com"] [uri "/.env"] [unique_id "aVBvgsV-KtiylmxJAn_wAgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 21:00:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 16:00:09.289457 2025] [security2:error] [pid 531906:tid 531925] [client 104.207.52.125:55731] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rawsynergy.com"] [uri "/.git/HEAD"] [unique_id "aVBI2QPInpOYe3ucwL1R6AAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 19:46:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 14:46:15.404999 2025] [security2:error] [pid 5591:tid 5591] [client 104.207.52.125:15317] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barpubsigns.com"] [uri "/.svn/wc.db"] [unique_id "aVA3h_OKmBFbTxCHvpOTXgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 17:41:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 12:41:44.972973 2025] [security2:error] [pid 17824:tid 17824] [client 104.207.52.125:35757] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mountainjaytherapy.com"] [uri "/.git/HEAD"] [unique_id "aVAaWEcWCpf2cQ-sM6ENoQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2025-12-27 12:55:12
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-25 04:07:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:07:26.094361 2025] [security2:error] [pid 31728:tid 31728] [client 104.207.52.125:34469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.platformintelligence.com"] [uri "/.svn/wc.db"] [unique_id "aSUrfht7cBpj8uvo3tnuQQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:37:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:37:08.142047 2025] [security2:error] [pid 1647076:tid 1647096] [client 104.207.52.125:28943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kylight.com"] [uri "/.git/HEAD"] [unique_id "aSUWVOH4DuV7HFq4iAkDnwAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:38:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.52.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:38:43.331767 2025] [security2:error] [pid 811:tid 811] [client 104.207.52.125:12145] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hell0.me"] [uri "/.svn/wc.db"] [unique_id "aSUIo7bhCQ1Pm8yCLJvTsgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-30 14:56:30
(7 months ago)
WordPress Brute Force
Brute-Force
๐ฉ๐ช
Marc
2025-10-29 19:26:51
(7 months ago)
Brute-Force
Web App Attack
๐ฆ๐บ
oncord
2025-10-15 08:15:10
(7 months ago)
Form spam
Web Spam
๐ฆ๐บ
oncord
2025-10-10 15:24:32
(8 months ago)
Form spam
Web Spam
๐บ๐ธ
oncord
2025-10-05 03:02:30
(8 months ago)
Form spam
Web Spam
Anonymous
2025-04-07 11:19:19
(1 year ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.04.07 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.04.07 is noted in report timestamp
show less
Hacking
Brute-Force