๐บ๐ธ
TPI-Abuse
2026-02-10 18:03:27
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 13:03:18.695047 2026] [security2:error] [pid 3345:tid 3345] [client 104.207.61.221:48625] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aoklandco.com"] [uri "/.env.local"] [unique_id "aYty5qPFKmnnXZ-dhFNajwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 05:11:55
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 00:11:51.957630 2026] [security2:error] [pid 25057:tid 25062] [client 104.207.61.221:16741] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "idwic.com"] [uri "/api/.env"] [unique_id "aYq-F9x5JYPt7AJhJMhwEAAAAMM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 04:49:44
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 23:49:37.920973 2026] [security2:error] [pid 1249187:tid 1249190] [client 104.207.61.221:33883] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magnetbay.com"] [uri "/wp/.git/config"] [unique_id "aYq44aOanTkG5NEwWuNeQwAAAIE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:28:48
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:28:41.723911 2026] [security2:error] [pid 20837:tid 20837] [client 104.207.61.221:9633] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ianmagarzo.com"] [uri "/site/.git/config"] [unique_id "aYql6TJ-N8yzw6ZztxPOIQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 02:55:54
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 21:55:45.817217 2026] [security2:error] [pid 5315:tid 5315] [client 104.207.61.221:12837] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingfishbets.com"] [uri "/app/.env"] [unique_id "aYqeMTrZbqCV6lEUCiEq-AAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 00:48:25
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.61.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 19:48:17.663669 2026] [security2:error] [pid 8918:tid 8918] [client 104.207.61.221:53305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keyston.net"] [uri "/backend/.env"] [unique_id "aYqAUaR3YKd2oBO8zeIHwQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-09 22:59:20
(4 months ago)
Auto-ban: >3000 req/min op 2026-02-09
Hacking
Web App Attack
SSH
๐ฎ๐น
ciccio diddo
2026-01-22 23:51:39
(4 months ago)
CMS/WP Exploit xmlrpc port:Tcp/80,443
Brute-Force
Web App Attack
๐ช๐ธ
10dencehispahard SL
2026-01-12 06:39:19
(5 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2026-01-05 20:27:16
(5 months ago)
Attempted brute force login to web vpn 18 time(s); last attempt for 2026.01.05 is noted in report ti ...
show more
Attempted brute force login to web vpn 18 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐ต๐ฑ
sefinek.net
2025-12-22 22:26:28
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (X11; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฑ๐ป
garmtech.com
2025-11-27 02:13:50
(6 months ago)
IM360 WAF: Attempt to upload malware
Hacking
Anonymous
2025-11-26 23:25:56
(6 months ago)
Attempted brute force login to web vpn 18 time(s); last attempt for 2025.11.26 is noted in report ti ...
show more
Attempted brute force login to web vpn 18 time(s); last attempt for 2025.11.26 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-10-27 06:32:28
(7 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2025-10-26 12:41:27
(7 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-content/ - User Agent: N/ ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-content/ - User Agent: N/A - Timestamp: 10/26/2025 12:41 pm (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack