π―π΅
S.O.B.A. Dev.
2026-09-28 15:35:22
(4 days ago)
Persistent port scanning or vulnerability scanning
Port Scan
π§πͺ
madeit
2026-09-22 20:36:38
(1 week ago)
Web App Attack
π§πͺ
madeit
2026-08-19 11:24:24
(1 month ago)
Web App Attack
π©πͺ
abdubhai
2026-06-26 04:25:30
(3 months ago)
172.69.214.57 - - [26/Jun/2026:0
...
Brute-Force
Anonymous
2026-06-25 14:16:46
(3 months ago)
172.69.214.57 - - [25/Jun/2026:16:16:04 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 ...
show more
172.69.214.57 - - [25/Jun/2026:16:16:04 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
172.69.214.57 - - [25/Jun/2026:16:16:04 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 242 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
172.69.214.57 - - [25/Jun/2026:16:16:05 +0200] "GET //website/wp-includes/wlwmanifest.xml HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
172.69.214.57 - - [25/Jun/2026:16:16:05 +0200] "GET //website/wp-includes/wlwmanifest.xml HTTP/1.1" 404 242 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
172.69.214.57 - - [25/Jun/2026:16:16:45 +0200] "GET //wp1/wp-includes/wlwmanifest.xml HT
...
show less
Brute-Force
Web App Attack
Anonymous
2026-06-22 18:59:48
(3 months ago)
Aggressive web scan
Web App Attack
πΊπΈ
mnsf
2026-06-11 03:05:44
(3 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
π¬π§
pinguin
2026-05-19 17:09:28
(4 months ago)
Triggered Cloudflare WAF (firewallManaged) from CA.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from CA.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /ALFA_DATA/alfacgiapi/perl.alfa
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π¦πΊ
oncord
2026-05-19 15:28:30
(4 months ago)
Form spam
Web Spam
Anonymous
2026-04-19 19:39:37
(5 months ago)
Aggressive web scan
Web App Attack
π¦πΊ
oncord
2026-04-05 22:30:11
(5 months ago)
Form spam
Web Spam
πΊπΈ
TPI-Abuse
2026-04-05 17:34:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 13:34:07.782142 2026] [security2:error] [pid 522:tid 522] [client 172.69.214.57:13197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "summithost.com"] [uri "/.env.development"] [unique_id "adKdD0Bgo5vhq8m7wITkJgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 01:40:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 21:40:29.518416 2026] [security2:error] [pid 22621:tid 22621] [client 172.69.214.57:14039] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michalovic.org"] [uri "/.env.staging"] [unique_id "adG9jY7ExvjON5j1KdwWxgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 17:43:15
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 13:43:07.009788 2026] [security2:error] [pid 22734:tid 22734] [client 172.69.214.57:11868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hbgmccormickfoundation.org"] [uri "/.env.json"] [unique_id "adFNqxHZYq2Bzm_SDTBDugAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 17:06:59
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 13:06:51.298592 2026] [security2:error] [pid 3877:tid 3877] [client 172.69.214.57:12242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jerryhetrick.com"] [uri "/.env.local.backup"] [unique_id "adFFK28UTokW8t9hpjAN6gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack