๐ง๐ช
madeit
2026-09-01 02:49:01
(18 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 00:55:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 20:55:38.456527 2026] [security2:error] [pid 3796:tid 3796] [client 172.69.166.30:10418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.dwiller.com"] [uri "/.git/config"] [unique_id "aoOtip39bUoLY2LLbyotiwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-17 21:59:28
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-08-17
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 04:39:18
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 00:39:11.181419 2026] [security2:error] [pid 30107:tid 30107] [client 172.69.166.30:10743] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "inversionestalarame.com"] [uri "/.git/config"] [unique_id "aoKQbydm81OzsEyaSyi4MgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 02:51:37
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 22:51:32.396809 2026] [security2:error] [pid 14814:tid 14819] [client 172.69.166.30:10902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.seips.org"] [uri "/.git/config"] [unique_id "aoJ3NGDnqDi7VIF_AJu-FgAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:00:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.166.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:00:15.753857 2026] [security2:error] [pid 18140:tid 18140] [client 172.69.166.30:9343] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.progressivefileshare.org"] [uri "/.git/config"] [unique_id "aoJdHyp9EzhmuIt-raqwdAAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
abdubhai
2026-07-28 08:53:22
(1 month ago)
172.69.166.30 - - [28/Jul/2026:1
...
Brute-Force
๐ณ๐ฑ
debestelapp
2026-07-28 06:10:05
(1 month ago)
Web App Attack
๐ฉ๐ช
abdubhai
2026-06-17 05:58:49
(2 months ago)
172.69.166.30 - - [17/Jun/2026:1
...
Brute-Force
๐ฌ๐ง
pinguin
2026-06-07 14:11:59
(2 months ago)
Triggered Cloudflare WAF (firewallManaged) from SG.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from SG.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: //wordpress/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
acadeova
2026-04-17 22:42:24
(4 months ago)
๐จ Recon detected (nft drop)
SRC=172.69.166.30
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=172.69.166.30
Observed=TCP dpt=80 in=enp0s6 ttl=56
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฌ๐ง
pinguin
2026-04-06 23:53:39
(4 months ago)
Triggered Cloudflare WAF (firewallManaged) from SG.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from SG.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: //wp/
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
mnsf
2026-04-03 01:06:02
(4 months ago)
Scanning/Probing (18)
Brute-Force
Web App Attack
๐ฉ๐ช
2048
2026-02-02 19:23:44
(6 months ago)
2026-02-02T20:23:23.510898+01:00 machodeer kernel: [2092435.752150] [UFW BLOCK] IN=ens3 OUT= MAC=RED ...
show more
2026-02-02T20:23:23.510898+01:00 machodeer kernel: [2092435.752150] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.69.166.30 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=55 ID=3173 DF PROTO=TCP SPT=38547 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
2026-02-02T20:23:24.459194+01:00 machodeer kernel: [2092436.701337] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.69.166.30 DST=REDACTED LEN=60 TOS=0x00 PREC=0x20 TTL=51 ID=25508 DF PROTO=TCP SPT=11313 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
2026-02-02T20:23:25.328248+01:00 machodeer kernel: [2092437.570107] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.69.166.30 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=53 ID=10413 DF PROTO=TCP SPT=46315 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
show less
Port Scan
๐บ๐ฆ
URAN Publishing Service
2026-01-20 19:29:39
(7 months ago)
172.69.166.30 - - [20/Jan/2026:21:29:38 +0200] "GET /wp-admin/css/colors/blue/index.php HTTP/1.1" 40 ...
show more
172.69.166.30 - - [20/Jan/2026:21:29:38 +0200] "GET /wp-admin/css/colors/blue/index.php HTTP/1.1" 404 357 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
172.69.166.30 - - [20/Jan/2026:21:29:38 +0200] "GET /wp-admin/images/admin.php HTTP/1.1" 404 357 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack