๐ง๐ช
madeit
2026-09-14 00:05:23
(5 days ago)
Web App Attack
๐จ๐ฟ
Prcek
2026-09-09 07:11:11
(1 week ago)
PortScan:HOST=172.69.59.179,DPORTS=443
Port Scan
๐ง๐ช
madeit
2026-09-06 01:37:41
(1 week ago)
Web App Attack
๐ง๐ช
madeit
2026-08-13 02:48:43
(1 month ago)
Web App Attack
๐ณ๐ฑ
wolfemium
2026-07-29 01:07:13
(1 month ago)
172.69.59.179 - - [29/Jul/2026:04:07:11 +0300] "GET /v543.php HTTP/1.1" 502 150 "-" "-"
172.69.59.17 ...
show more
172.69.59.179 - - [29/Jul/2026:04:07:11 +0300] "GET /v543.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/Jul/2026:04:07:12 +0300] "GET //ip.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/Jul/2026:04:07:12 +0300] "GET /fw/faiyy.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/Jul/2026:04:07:12 +0300] "GET //wp-content/cong.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/Jul/2026:04:07:13 +0300] "GET /wp-includes/css/index.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/Jul/2026:04:07:13 +0300] "GET /class-walker-footer-dev.php HTTP/1.1" 502 150 "-" "-"
...
show less
DDoS Attack
๐บ๐ธ
micropedro
2026-06-24 10:13:00
(2 months ago)
8 incidents: web scanning/attack. First: 2026-06-24 06:12, Last: 2026-06-24 06:13 UTC. Triggers: fir ...
show more
8 incidents: web scanning/attack. First: 2026-06-24 06:12, Last: 2026-06-24 06:13 UTC. Triggers: firewall-http.
show less
Port Scan
Web App Attack
๐ณ๐ฑ
wolfemium
2026-06-23 07:33:21
(2 months ago)
172.69.59.179 - - [23/Jun/2026:10:33:17 +0300] "GET /vx.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 ...
show more
172.69.59.179 - - [23/Jun/2026:10:33:17 +0300] "GET /vx.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [23/Jun/2026:10:33:18 +0300] "GET /wp-admin/wp.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [23/Jun/2026:10:33:19 +0300] "GET /aa.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [23/Jun/2026:10:33:19 +0300] "GET /bolt.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [23/Jun/2026:10:33:20 +0300] "GET /x.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [23/Jun/2026:10:33:21 +0300] "GET /aaa.php HTTP/1.1" 502 150 "-" "-"
...
show less
DDoS Attack
๐ณ๐ฑ
wolfemium
2026-06-10 00:38:31
(3 months ago)
172.69.59.179 - - [10/Jun/2026:03:38:29 +0300] "GET /ws73.php HTTP/1.1" 502 150 "-" "-"
172.69.59.17 ...
show more
172.69.59.179 - - [10/Jun/2026:03:38:29 +0300] "GET /ws73.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [10/Jun/2026:03:38:30 +0300] "GET /ws84.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [10/Jun/2026:03:38:30 +0300] "GET /baixy.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [10/Jun/2026:03:38:30 +0300] "GET /wp-good.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [10/Jun/2026:03:38:30 +0300] "GET /a4.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [10/Jun/2026:03:38:30 +0300] "GET /ws77.php HTTP/1.1" 502 150 "-" "-"
...
show less
DDoS Attack
๐ณ๐ฑ
wolfemium
2026-05-29 18:40:05
(3 months ago)
172.69.59.179 - - [29/May/2026:21:40:04 +0300] "GET /xleetshell.php HTTP/1.1" 502 150 "-" "-"
172.69 ...
show more
172.69.59.179 - - [29/May/2026:21:40:04 +0300] "GET /xleetshell.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/May/2026:21:40:04 +0300] "GET /options.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/May/2026:21:40:04 +0300] "GET /makeasmtp.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/May/2026:21:40:05 +0300] "GET /xx.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/May/2026:21:40:05 +0300] "GET /worksec.php HTTP/1.1" 502 150 "-" "-"
172.69.59.179 - - [29/May/2026:21:40:05 +0300] "GET /defaults.php HTTP/1.1" 502 150 "-" "-"
...
show less
DDoS Attack
๐ฌ๐ง
pinguin
2025-09-13 15:39:27
(1 year ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.36 Edge/16.16299
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ช๐ธ
el-brujo
2025-09-10 10:35:37
(1 year ago)
10/Sep/2025:12:35:36.247706 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
10/Sep/2025:12:35:36.247706 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 172.69.59.179] ModSecurity: Warning. Matched phrase "fsockopen" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "295"] [id "933150"] [msg "PHP Injection Attack: High-Risk PHP Function Name Found"] [data "Matched Data: fsockopen found within REQUEST_FILENAME: /cursos/cehv13/cehv13 lab prerequisites/websites/ceh wordpress website/wp-includes/requests/src/transport/fsockopen.php"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-php"] [tag "platform-multi"] [tag "attack-injection-php"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/152/242"] [hostname "el-hacker.org"] [uri "/Cursos/CEHv13/CEHv13 Lab Prerequisites/Websites/CEH WordPress Website/wp-includes/Requests/src/Transport/Fsockopen.php"] [unique_id "aMFUeDolax_Z6WzcW8CdNQAAAmY"]
...
show less
Hacking
Web App Attack
Anonymous
2025-07-26 03:53:55
(1 year ago)
[Sat Jul 26 05:53:53.875624 2025] [authz_core:error] [pid 3983] [client 172.69.59.179:53630] AH01630 ...
show more
[Sat Jul 26 05:53:53.875624 2025] [authz_core:error] [pid 3983] [client 172.69.59.179:53630] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Jul 26 05:53:54.007648 2025] [authz_core:error] [pid 3983] [client 172.69.59.179:53630] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Jul 26 05:53:54.137865 2025] [authz_core:error] [pid 3983] [client 172.69.59.179:53630] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-06-23 00:31:48
(1 year ago)
WP Admin Scan Activities
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-01 15:38:12
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 172.69.59.179 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.59.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 01 11:38:04.253517 2025] [security2:error] [pid 249496:tid 249496] [client 172.69.59.179:20382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.gibitdigital.com"] [uri "/.git/config"] [unique_id "aDxz3AZIdnVsNE7bOTsmCgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-04-18 08:10:52
(1 year ago)
Port probe to tcp/80 (http)
[srv125]
Port Scan
Bad Web Bot
Web App Attack