๐บ๐ธ
TPI-Abuse
2026-07-28 15:06:30
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 104.23.160.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 104.23.160.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 11:06:26.020605 2026] [security2:error] [pid 3116017:tid 3116017] [client 104.23.160.35:13215] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.thebradleyclinic.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.thebradleyclinic.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "amjFcr_NNPnsoIIKj4b6QwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-12 04:16:59
(2 weeks ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-08 04:14:29
(2 weeks ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-28 04:06:29
(1 month ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-05-21 04:07:07
(2 months ago)
Wordpress malicious attack:[octausername]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-16 17:17:59
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 104.23.160.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 104.23.160.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 16 13:17:56.165625 2026] [security2:error] [pid 12283:tid 12283] [client 104.23.160.35:12713] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.cathybermanmft.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.cathybermanmft.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "agimxI_QbElW_-O4D-_T7wAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-02-23 12:50:46
(5 months ago)
๐จ Recon detected (nft drop)
SRC=104.23.160.35
Observed=TCP dpt=80 in=enp0s6 ttl=53
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=104.23.160.35
Observed=TCP dpt=80 in=enp0s6 ttl=53
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
F242
2025-10-24 13:06:30
(9 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
Anonymous
2025-10-09 03:08:06
(9 months ago)
[Thu Oct 09 05:08:05.399004 2025] [authz_core:error] [pid 5318] [client 104.23.160.35:37242] AH01630 ...
show more
[Thu Oct 09 05:08:05.399004 2025] [authz_core:error] [pid 5318] [client 104.23.160.35:37242] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu Oct 09 05:08:05.603996 2025] [authz_core:error] [pid 5318] [client 104.23.160.35:37242] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu Oct 09 05:08:05.812294 2025] [authz_core:error] [pid 5318] [client 104.23.160.35:37242] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2025-10-04 23:07:41
(9 months ago)
[Sun Oct 05 01:07:40.448077 2025] [authz_core:error] [pid 27364] [client 104.23.160.35:9360] AH01630 ...
show more
[Sun Oct 05 01:07:40.448077 2025] [authz_core:error] [pid 27364] [client 104.23.160.35:9360] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Oct 05 01:07:40.659551 2025] [authz_core:error] [pid 27364] [client 104.23.160.35:9360] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Oct 05 01:07:40.862151 2025] [authz_core:error] [pid 27364] [client 104.23.160.35:9360] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
Paschen J Ki
2025-08-23 03:44:42
(11 months ago)
Blocked by UFW [8008/tcp]
Source port: 43304
TTL: 50
Packet length: 60
TOS: 0x00
This report was ge ...
show more
Blocked by UFW [8008/tcp]
Source port: 43304
TTL: 50
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฌ๐ง
pinguin
2025-07-25 02:02:37
(1 year ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (compatible; wpbot/1.3; +https://forms.gle/ajBaxygz9jSR8p8G9)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-05-10 11:02:42
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-05-10 01:54:38
(1 year ago)
Port probe to tcp/80 (http)
[srv125]
Port Scan
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-05-07 09:04:52
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack