Anonymous
2026-01-24 01:05:01
(6 months ago)
...
Brute-Force
๐ฉ๐ช
kranem
2026-01-18 21:01:38
(6 months ago)
Triggered Cloudflare WAF from NL.
Action taken: BLOCK
ASN: 216071 (VDSINA)
Protocol: HTTP/1.1 (GET m ...
show more
Triggered Cloudflare WAF from NL.
Action taken: BLOCK
ASN: 216071 (VDSINA)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-01-18T20:29:34Z
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/52.0.2776.52 Safari/537.36
show less
Bad Web Bot
๐ฉ๐ช
Packets-Decreaser.NET
2026-01-05 17:00:53
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฆ๐ฑ
Lungu Stefan Gabriel
2025-12-30 19:44:27
(6 months ago)
Node: AL-01 | Jail: http-port-80 | Rate-Limit (Port 80) - Rate-limit/abuse attack on port 80. Report ...
show more
Node: AL-01 | Jail: http-port-80 | Rate-Limit (Port 80) - Rate-limit/abuse attack on port 80. Reported by fail2ban.
show less
Web Spam
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2025-12-30 13:59:14
(6 months ago)
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpo ...
show more
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 10.0; Win64; x64; Trident/5.0)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐จ๐ฆ
1gz
2025-12-30 13:59:14
(6 months ago)
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpo ...
show more
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.3; Trident/5.0)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
Anonymous
2025-12-29 13:25:21
(6 months ago)
Reported by internal abuse tracking
DDoS Attack
Web App Attack
๐จ๐ฆ
1gz
2025-12-29 11:50:14
(6 months ago)
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpo ...
show more
Triggered Cloudflare WAF (l7ddos) from NL.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2724.68 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
DDoS Attack
Bad Web Bot
๐ฎ๐ณ
Aldreena
2025-12-08 06:43:24
(7 months ago)
Multiple failed Microsoft Entra ID login attempts detected.
Web App Attack
๐ฉ๐ช
LRob
2025-11-08 09:06:20
(8 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
Anonymous
2025-11-07 14:50:44
(8 months ago)
wordpress-trap
Web App Attack
๐ฎ๐น
alph44
2025-10-17 22:54:27
(9 months ago)
WordPress attack detected by fail2ban: 3 failed attempts
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-16 08:29:55
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 109.234.38.219 (v2129627.hosted-by-vdsina.ru): ...
show more
(mod_security) mod_security (id:225170) triggered by 109.234.38.219 (v2129627.hosted-by-vdsina.ru): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 16 04:29:49.383822 2025] [security2:error] [pid 20580:tid 20580] [client 109.234.38.219:34798] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jolankagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jolankagroup.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aPCs_UUB984Dq3IoJtE4GwAAAAo"], referer: https://jolankagroup.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-08 19:21:34
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 109.234.38.219 (v2129627.hosted-by-vdsina.ru): ...
show more
(mod_security) mod_security (id:225170) triggered by 109.234.38.219 (v2129627.hosted-by-vdsina.ru): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 08 15:21:28.424322 2025] [security2:error] [pid 24703:tid 24703] [client 109.234.38.219:37546] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||the-it-man.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "the-it-man.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOa5uPNZOVC8twYupUfnqAAAABk"], referer: https://the-it-man.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2025-10-07 20:31:54
(9 months ago)
10 attempts against mh-misc-ban on plum
Web App Attack