๐ฒ๐ฝ
octageeks.com
2026-05-29 04:16:05
(1 week ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-05-28 04:12:31
(1 week ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฉ๐ช
grassau.com
2026-01-14 15:55:57
(4 months ago)
*Port Scan* detected from 104.207.56.212 (DE/Germany/-).
Port Scan
๐ซ๐ท
mrcrassi
2025-12-12 06:54:05
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST meth ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /wp-login.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-02 22:19:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 17:19:53.662423 2025] [security2:error] [pid 13773:tid 13773] [client 104.207.56.212:48193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vanmetermailing.com"] [uri "/.git/HEAD"] [unique_id "aS9mCa4GyzDhR0MGwHpieAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
SilverZippo
2025-12-02 08:45:16
(6 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 07:36:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 02:36:44.102369 2025] [security2:error] [pid 11760:tid 11777] [client 104.207.56.212:51347] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unitedonegroup.com"] [uri "/.svn/wc.db"] [unique_id "aS6XDBRTHxJ9yOS6yRvWBAAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 07:19:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 02:19:30.084425 2025] [security2:error] [pid 31522:tid 31522] [client 104.207.56.212:17923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bolivarbulletintimes.com"] [uri "/.svn/wc.db"] [unique_id "aS6TAoDMnYhwCG-X81QPrwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:28:59
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:28:53.835967 2025] [security2:error] [pid 23904:tid 23904] [client 104.207.56.212:20491] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chicago-property-management-companies.com"] [uri "/.svn/wc.db"] [unique_id "aS55FdBSRLQYNZj9eRmrjQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:51:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.56.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:51:27.877337 2025] [security2:error] [pid 12727:tid 12727] [client 104.207.56.212:22801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "diceknobs.com"] [uri "/.svn/wc.db"] [unique_id "aS5wT5fVkHYkFqGS0JroLAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-12-02 00:55:01
(6 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
Anonymous
2025-11-28 10:49:20
(6 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-11-27 13:36:10
(6 months ago)
Attempted brute force login to web vpn 2073 time(s); last attempt for 2025.11.27 is noted in report ...
show more
Attempted brute force login to web vpn 2073 time(s); last attempt for 2025.11.27 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-24 06:39:58
(6 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-11-18 23:42:36
(6 months ago)
Attempted brute force login to web vpn 325 time(s); last attempt for 2025.11.18 is noted in report t ...
show more
Attempted brute force login to web vpn 325 time(s); last attempt for 2025.11.18 is noted in report timestamp
show less
Hacking
Brute-Force