๐ง๐ช
madeit
2026-09-05 04:47:47
(17 hours ago)
Web App Attack
๐ฎ๐ฉ
securejdprop
2026-08-21 06:55:37
(2 weeks ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
Anonymous
2026-08-16 00:49:30
(2 weeks ago)
invalid request
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-14 11:46:12
(3 weeks ago)
Web App Attack
๐บ๐ธ
wimaxnz
2026-05-18 04:41:50
(3 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
๐บ๐ธ
mw
2026-04-06 04:55:04
(4 months ago)
GET /.env2 HTTP/1.1
Web App Attack
๐ฌ๐ง
pinguin
2026-04-05 23:06:47
(4 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /https%3A/www.cloudflare.com/login%3Futm_source%3Derror_100x
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-01 13:44:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 09:44:28.193431 2026] [security2:error] [pid 19702:tid 19702] [client 172.70.230.170:11701] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bespoke-ss.c-w-a-m.com"] [uri "/private/.env"] [unique_id "ac0hPKoCnd477mWzpeEqHAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 12:03:01
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 08:02:50.514159 2026] [security2:error] [pid 7468:tid 7468] [client 172.70.230.170:11749] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "badfoodlawsuit.com.helpkccare.org"] [uri "/api/.env"] [unique_id "acZx6ipkn-9gaM_8fb7G3QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 08:14:25
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 04:14:20.725070 2026] [security2:error] [pid 29315:tid 29315] [client 172.70.230.170:9228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.stricklinranch.com"] [uri "/.env.orig"] [unique_id "acY8XMeYubxn1B2AEqV1cQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 03:15:23
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 23:15:13.011236 2026] [security2:error] [pid 29254:tid 29254] [client 172.70.230.170:10948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "computerizer.org"] [uri "/.env.staging"] [unique_id "acX2QQkOl3L0kMkU6n6I_AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 14:57:41
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 10:57:35.653875 2026] [security2:error] [pid 32438:tid 32438] [client 172.70.230.170:11607] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.aufflammen.com"] [uri "/.env.bak"] [unique_id "acVJX9J4GgpXdZ7PhWECSQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 13:02:54
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 09:02:46.659810 2026] [security2:error] [pid 26368:tid 26368] [client 172.70.230.170:10495] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ohanameetup.party"] [uri "/.env.tmp"] [unique_id "acUudmQsAUHFetSpPuyi-wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 12:25:15
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 08:25:09.930732 2026] [security2:error] [pid 3271:tid 3271] [client 172.70.230.170:10755] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.eqmarino.cl"] [uri "/.env.development.local"] [unique_id "acUlpR2DQGo8B2z5tt58-gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 11:26:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.230.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 07:26:37.680807 2026] [security2:error] [pid 20950:tid 20950] [client 172.70.230.170:13056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.new-bethel-baptist-church.com"] [uri "/public/.env"] [unique_id "acUX7azPh4qvhHbPIa5LCgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack