๐จ๐ฆ
1gz
2026-06-20 05:58:29
(16 hours ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kerko.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฌ๐ท
setupgr
2026-06-20 05:53:56
(16 hours ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 08:53:54.221156 2026] [security2:error] [pid 202885:tid 202912] [client 116.179.33.205:27377] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/plugins/elementor/assets/css/widget-image.min.css"] [unique_id "ajYq8krlp52aw72Tw8eOcgAAAQA"], referer: https://ftiaxtomonosou.gr/%CE%B2%CE%BF%CF%84%CE%B1%CE%BD%CE%B9%CE%BA%CE%AE_%CF%84%CE%B1%CE%BE%CE%B9%CE%BD%CF%8C%CE%BC%CE%B7%CF%83%CE%B7/mitragyna-ciliata/page/3/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-19 23:04:54
(23 hours ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 02:04:50.811523 2026] [security2:error] [pid 2277:tid 2380] [client 116.179.33.205:30016] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/jet-engine/assets/css/frontend.css"] [unique_id "ajXLElVjV5VR3hAZ4rkk9gAAAEk"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%B4%CE%B5%CF%83%CF%80%CE%BF%CF%84%CE%AC%CE%BA%CE%B9-%CE%B1%CE%BC%CE%B5%CF%81%CE%B9%CE%BA%CE%AE%CF%82/
show less
Port Scan
๐ฎ๐ฉ
hermawan
2026-06-19 19:27:54
(1 day ago)
1781897243.365550 116.179.33.205 103.166.156.58 65535_2-4-8-1-3_1436_7 2026-06-20 02:27:23 WIB
...
Email Spam
Hacking
Anonymous
2026-06-19 09:29:40
(1 day ago)
FortiWeb WAF: 26 attacks detected. Threat Score: 5800. Types: Client Management(13), GEO IP(13). Ori ...
show more
FortiWeb WAF: 26 attacks detected. Threat Score: 5800. Types: Client Management(13), GEO IP(13). Origin: China.
show less
Web App Attack
๐ฌ๐ท
setupgr
2026-06-19 07:05:56
(1 day ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 19 10:05:51.313108 2026] [security2:error] [pid 79894:tid 79921] [client 116.179.33.205:10516] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/plugins/dynamic-content-for-elementor/assets/css/style.min.css"] [unique_id "ajTqTyc2acK9dyAMRdLVUQAAAUA"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%B4%CE%B5%CF%83%CF%80%CE%BF%CF%84%CE%AC%CE%BA%CE%B9-%CE%B9%CE%B1%CF%80%CF%89%CE%BD%CE%AF%CE%B1%CF%82/
show less
Port Scan
๐ซ๐ท
Sklurk
2026-06-19 05:50:24
(1 day ago)
Web App Attack
Web App Attack
๐ฌ๐ท
setupgr
2026-06-19 05:49:56
(1 day ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 19 08:49:51.982677 2026] [security2:error] [pid 2321:tid 2498] [client 116.179.33.205:54633] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/plugins/elementor/assets/css/widget-divider.min.css"] [unique_id "ajTYf9Q6GrQCM-JSBa9z9AAAAQI"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%BA%CE%B1%CF%81%CF%85%CE%B4%CE%B9%CE%AC-%CE%B5%CF%85%CF%81%CF%89%CF%80%CE%B1%CF%8A%CE%BA%CE%AE/
show less
Port Scan
๐ช๐ธ
librebit
2026-06-19 05:35:16
(1 day ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-18 14:44:14
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 116.179.33.205 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 116.179.33.205 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 10:44:07.788027 2026] [security2:error] [pid 25770:tid 25792] [client 116.179.33.205:27641] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.digital4z.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.digital4z.com"] [uri "/Digital4z/wp-content/plugins/jetpack/modules/shortcodes/js/WS_FTP.LOG"] [unique_id "ajQENxrVGN1abdCZY05nOAAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-18 09:20:41
(2 days ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 18 12:20:38.805702 2026] [security2:error] [pid 3040547:tid 3040595] [client 116.179.33.205:60111] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/elementor/assets/lib/font-awesome/css/brands.min.css"] [unique_id "ajO4ZnJQXt_97GWFlLmzuQAAAFU"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/meranti-hellow/
show less
Port Scan
๐ฌ๐ท
setupgr
2026-06-18 06:58:24
(2 days ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 18 09:58:19.542379 2026] [security2:error] [pid 2210294:tid 2210435] [client 116.179.33.205:10452] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/themes/astra/assets/js/minified/style.min.js"] [unique_id "ajOXC7hY-m9nTIYxKGRqRQAAAZY"], referer: https://ftiaxtomonosou.gr/%CE%B2%CE%BF%CF%84%CE%B1%CE%BD%CE%B9%CE%BA%CE%AE_%CF%84%CE%B1%CE%BE%CE%B9%CE%BD%CF%8C%CE%BC%CE%B7%CF%83%CE%B7/juniperus-communis/
show less
Port Scan
๐ซ๐ท
Sklurk
2026-06-18 05:38:18
(2 days ago)
Web App Attack
Web App Attack
๐จ๐ฆ
1gz
2026-06-18 00:13:49
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kerko.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฌ๐ท
setupgr
2026-06-17 21:39:48
(3 days ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.205 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Thu Jun 18 00:39:46.125668 2026] [security2:error] [pid 2210175:tid 2210258] [client 116.179.33.205:38703] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/jet-menu/assets/public/css/public.css"] [unique_id "ajMUIn9oGssBgNwsPFusNwAAAFY"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%B4%CF%81%CF%85%CF%82-%CE%B1%CE%BC%CE%B5%CF%81%CE%B9%CE%BA%CE%AE%CF%82/
show less
Port Scan