๐ซ๐ท
Sklurk
2026-06-22 07:03:55
(3 hours ago)
Web App Attack
Web App Attack
๐ช๐ธ
librebit
2026-06-21 22:59:10
(11 hours ago)
Brute force
Brute-Force
๐จ๐ญ
zynex
2026-06-21 15:53:20
(18 hours ago)
URL Probing: /z_weine/angebot.php
Web App Attack
๐ซ๐ท
Sklurk
2026-06-21 06:47:05
(1 day ago)
Web App Attack
Web App Attack
๐จ๐ฆ
1gz
2026-06-21 06:12:47
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kerko.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ฆ
1gz
2026-06-20 04:54:18
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /foto-lajm/urime-te-shumta-per-ditelindje-por-reagimi-reflektues-i-florit-nuk-pritej-foto-lajm/536892/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฌ๐ท
setupgr
2026-06-19 07:06:06
(3 days ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.213 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.213 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 19 10:06:05.688227 2026] [security2:error] [pid 2321:tid 2538] [client 116.179.33.213:11769] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/plugins/dynamic-content-for-elementor/assets/js/fix-background-loop.min.js"] [unique_id "ajTqXdQ6GrQCM-JSBa-BuwAAARc"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%B4%CE%B5%CF%83%CF%80%CE%BF%CF%84%CE%AC%CE%BA%CE%B9-%CE%B9%CE%B1%CF%80%CF%89%CE%BD%CE%AF%CE%B1%CF%82/
show less
Port Scan
๐ซ๐ท
Sklurk
2026-06-19 06:42:05
(3 days ago)
Web App Attack
Web App Attack
๐ฌ๐ท
setupgr
2026-06-19 05:49:57
(3 days ago)
(mod_security) mod_security (id:100011) triggered by 116.179.33.213 (CN/China/Beijing/Jinrongjie (Xi ...
show more
(mod_security) mod_security (id:100011) triggered by 116.179.33.213 (CN/China/Beijing/Jinrongjie (Xicheng District)/-/[AS4837 CHINA169-BACKBONE CHINA UNICOM China169 Backbone]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 19 08:49:55.601982 2026] [security2:error] [pid 2321:tid 2519] [client 116.179.33.213:54361] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(www\\\\.)?ftiaxtomonosou\\\\.gr" at SERVER_NAME. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "54"] [id "100011"] [msg "CSF-TRIGGER: Country Block CN/SG for ftiaxtomonosou.gr"] [hostname "ftiaxtomonosou.gr"] [uri "/wp-content/cache/min/1/wp-content/plugins/elementor/assets/lib/font-awesome/css/regular.min.css"] [unique_id "ajTYg9Q6GrQCM-JSBa9z_AAAAQs"], referer: https://ftiaxtomonosou.gr/%CF%84%CE%B1_%CE%B5%CE%AF%CE%B4%CE%B7_%CF%84%CE%BF%CF%85_%CE%BE%CF%8D%CE%BB%CE%BF%CF%85/%CE%BA%CE%B1%CF%81%CF%85%CE%B4%CE%B9%CE%AC-%CE%B5%CF%85%CF%81%CF%89%CF%80%CE%B1%CF%8A%CE%BA%CE%AE/
show less
Port Scan
๐จ๐ฆ
1gz
2026-06-19 04:04:15
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kerko.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
Sklurk
2026-06-18 06:34:16
(4 days ago)
Web App Attack
Web App Attack
๐จ๐ฆ
1gz
2026-06-18 03:58:00
(4 days ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kerko.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
Starburst SysOp Team
2026-06-17 12:40:25
(4 days ago)
Malware host (X-Forwarded-For) detected by rbl.malware.expert. RBL lookup of 213.33.179.116.rbl.malw ...
show more
Malware host (X-Forwarded-For) detected by rbl.malware.expert. RBL lookup of 213.33.179.116.rbl.malware.expert succeeded at REQUEST_HEADERS:x-forwarded-for. (1001000-mnz6-3)
show less
Hacking
๐จ๐ฆ
1gz
2026-06-17 05:14:13
(5 days ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kryetitull/zgjedhjet-kqz-publikon-te-dhenat-paraprake/27933/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ฆ
1gz
2026-06-17 01:24:36
(5 days ago)
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /kerko.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot