Anonymous
2025-08-05 16:54:10
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ช๐ธ
el-brujo
2025-06-21 01:49:51
(11 months ago)
[Sat Jun 21 03:49:50.802870 2025] [proxy_fcgi:error] [pid 1194059:tid 1194377] [remote 156.253.171.1 ...
show more
[Sat Jun 21 03:49:50.802870 2025] [proxy_fcgi:error] [pid 1194059:tid 1194377] [remote 156.253.171.124:0] AH01071: Got error 'Primary script unknown\n', referer: https://www.google.com
[Sat Jun 21 03:49:51.072639 2025] [proxy_fcgi:error] [pid 1194059:tid 1194983] [remote 156.253.171.124:0] AH01071: Got error 'Primary script unknown\n', referer: https://www.google.com
...
show less
Hacking
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2025-06-18 20:53:26
(11 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User A ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User Agent: N/A - Timestamp: 6/18/2025 8:53 pm (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-15 21:15:06
(11 months ago)
(mod_security) mod_security (id:210730) triggered by 156.253.171.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 156.253.171.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 15 17:15:01.823816 2025] [security2:error] [pid 753162:tid 753162] [client 156.253.171.124:12373] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||n3fjp.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "n3fjp.com"] [uri "/old.sql"] [unique_id "aE831XlwsDtiKfje3UAPoQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-06-15 09:04:05
(11 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ต๐ฑ
sefinek.net
2025-05-22 11:11:06
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ต๐ฑ
sefinek.net
2025-05-10 10:00:50
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Xbox; Xbox One) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Edge/44.18363.8131
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2025-05-06 20:59:32
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 156.253.171.124 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 156.253.171.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 16:59:28.223278 2025] [security2:error] [pid 1412555:tid 1412578] [client 156.253.171.124:58775] [client 156.253.171.124] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.transitionalcareservices.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.transitionalcareservices.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aBp4MPbD4VOmUjYqICkjcQAAABA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Vertus
2025-05-01 22:35:47
(1 year ago)
Form spam
Web Spam
๐บ๐ธ
oncord
2025-05-01 20:16:22
(1 year ago)
Form spam
Web Spam
๐บ๐ธ
oncord
2025-04-25 12:19:04
(1 year ago)
Form spam
Web Spam
๐ฆ๐บ
oncord
2025-04-21 14:11:09
(1 year ago)
Form spam
Web Spam
๐จ๐ญ
backslash
2025-04-20 12:30:03
(1 year ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ฆ๐บ
oncord
2025-04-19 16:37:58
(1 year ago)
Form spam
Web Spam
Anonymous
2025-04-19 04:53:18
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH