π±π»
garmtech.com
2025-10-14 12:03:56
(10 months ago)
IM360 WAF: Old style account creation and modification in Joomla! MV:registration
Web App Attack
πΊπΈ
TPI-Abuse
2025-10-14 01:53:44
(10 months ago)
(mod_security) mod_security (id:240950) triggered by 149.126.218.113 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240950) triggered by 149.126.218.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 13 21:53:38.315966 2025] [security2:error] [pid 28946:tid 28955] [client 149.126.218.113:26189] ModSecurity: Access denied with code 403 (phase 1). Pattern match "\\\\D" at TX:1. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "4530"] [id "240950"] [rev "2"] [msg "COMODO WAF: XSS & SQL injection vulnerability in Pragyan CMS 3.0 (CVE-2015-1471)||whitecrosslibrary.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "whitecrosslibrary.com"] [uri "/"] [unique_id "aO2tIrnG206FFtipgy-kLgAAAUI"], referer: https://whitecrosslibrary.com/?wptouch_switch=desktop&redirect=https://wohnmobile-grossmann.de/index.php/component/k2/item/3-cum-sociis-natoque-penatibus-et-magnis-dis-parturient-montes-nascetur-ridiculus-mus
show less
Brute-Force
Bad Web Bot
Web App Attack
π±π»
garmtech.com
2025-10-13 11:57:42
(10 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 14-57.149.126.218.113.web-spam ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 14-57.149.126.218.113.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
π¬π§
relianoid.com
2025-10-13 01:56:02
(10 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
π΅π±
sefinek.net
2025-10-11 22:25:32
(10 months ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π±π»
garmtech.com
2025-10-09 20:25:47
(10 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 23-25.149.126.218.113.web-spam ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 23-25.149.126.218.113.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
π©πͺ
LRob
2025-10-06 11:02:06
(10 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
π¬π§
relianoid.com
2025-10-06 00:54:27
(10 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
π¦πΊ
MAGIC
2025-10-05 03:02:18
(10 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π©πͺ
stinpriza
2025-10-04 10:06:38
(10 months ago)
Web App Attack
Web App Attack
π΅π±
sefinek.net
2025-10-02 09:55:31
(11 months ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π¬π§
relianoid.com
2025-10-01 05:04:36
(11 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
Anonymous
2025-09-30 05:21:58
(11 months ago)
apache exploit attempt
Hacking
SQL Injection
πΊπΈ
TPI-Abuse
2025-09-28 23:30:54
(11 months ago)
(mod_security) mod_security (id:240950) triggered by 149.126.218.113 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240950) triggered by 149.126.218.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 28 19:30:45.437270 2025] [security2:error] [pid 31090:tid 31090] [client 149.126.218.113:1459] ModSecurity: Access denied with code 403 (phase 1). Pattern match "\\\\D" at TX:1. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "4530"] [id "240950"] [rev "2"] [msg "COMODO WAF: XSS & SQL injection vulnerability in Pragyan CMS 3.0 (CVE-2015-1471)||goldengatecorgis.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "goldengatecorgis.org"] [uri "/"] [unique_id "aNnFJRrWyMLp2Zb1QUVwygAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
relianoid.com
2025-09-27 14:43:24
(11 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam