๐ต๐ฑ
sefinek.net
2026-02-10 19:22:39
(4 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (X11; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ช๐ธ
10dencehispahard SL
2026-01-12 07:44:11
(5 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐ฉ๐ฐ
TransAdvice-Abuse
2025-12-26 07:49:09
(5 months ago)
IRC SPAM/Flood
DDoS Attack
Anonymous
2025-11-27 13:27:17
(6 months ago)
Attempted brute force login to web vpn 2125 time(s); last attempt for 2025.11.27 is noted in report ...
show more
Attempted brute force login to web vpn 2125 time(s); last attempt for 2025.11.27 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-26 10:25:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:25:26.203947 2025] [security2:error] [pid 18541:tid 18541] [client 104.207.61.175:60839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jcsforwarding.com"] [uri "/.env"] [unique_id "aSbVlrlamLryMDJxZSkaVAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:42:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:42:43.728144 2025] [security2:error] [pid 3551:tid 3551] [client 104.207.61.175:42829] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.knoxbestos.com"] [uri "/.svn/wc.db"] [unique_id "aSa9g66nauoOG2uU8-OWpAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:57:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:57:02.983823 2025] [security2:error] [pid 16934:tid 16979] [client 104.207.61.175:52483] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.boraozbek.com"] [uri "/.env"] [unique_id "aSaWrhKESCEx-WKRVnsn1QAAAY8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:30:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:30:21.485925 2025] [security2:error] [pid 5425:tid 5449] [client 104.207.61.175:25789] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hdtv55.com"] [uri "/.git/HEAD"] [unique_id "aSaQbVoBK930f_mgSwHCjgAAAVY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:59:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:59:03.188937 2025] [security2:error] [pid 243930:tid 244027] [client 104.207.61.175:41029] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.certifiedecommerceconsultant.com"] [uri "/.svn/wc.db"] [unique_id "aSQsZyGfGLJwz49-AzKgGwAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:58:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:58:46.982686 2025] [security2:error] [pid 23756:tid 23756] [client 104.207.61.175:14275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.misscharlottemusic.com"] [uri "/.git/HEAD"] [unique_id "aSQeRsDRk1-tFIdTa_mVRQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:57:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:53:35.621974 2025] [security2:error] [pid 2246:tid 2246] [client 104.207.61.175:19457] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.78cardz.78cardsofthetarot-tarotmancy-tarot-cards-and-tarot-readings.com"] [uri "/.git/HEAD"] [unique_id "aSQO_-q2LgwXsxcxGg4pSAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:35:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:35:00.021669 2025] [security2:error] [pid 12102:tid 12126] [client 104.207.61.175:59887] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.furball.m3sxa.com"] [uri "/.svn/wc.db"] [unique_id "aSQKpPW9q1mxetu5lC-O9wAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:41:59
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:41:48.868149 2025] [security2:error] [pid 24624:tid 24624] [client 104.207.61.175:49267] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.sonoranwaterworks.com"] [uri "/.git/HEAD"] [unique_id "aSP-LM3fuVfVkt23nvWMzAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 03:25:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.175 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:24:49.302092 2025] [security2:error] [pid 14327:tid 14327] [client 104.207.61.175:13311] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.meghanmack.name"] [uri "/.env"] [unique_id "aSPQASJmZHBufN2zor8ZuAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-18 23:48:07
(6 months ago)
Attempted brute force login to web vpn 306 time(s); last attempt for 2025.11.18 is noted in report t ...
show more
Attempted brute force login to web vpn 306 time(s); last attempt for 2025.11.18 is noted in report timestamp
show less
Hacking
Brute-Force