๐บ๐ธ
TPI-Abuse
2026-09-03 14:29:51
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 10:29:44.795010 2026] [security2:error] [pid 22303:tid 22303] [client 172.70.231.39:13371] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "innovacionesnimba.com"] [uri "/.env.test"] [unique_id "apmEWJydkzMwKmPl0KO7CgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Kinsei Engineering Inc.
2026-09-02 17:16:05
(1 day ago)
UFW:High-frequency access to unused ports
Port Scan
๐ฉ๐ช
ValtonTahiri
2026-07-27 19:33:30
(1 month ago)
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show more
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=172.70.231.39; proto=TCP; source_port=11058; target_port=8443; flags=SYN
show less
Port Scan
๐ฒ๐ฝ
octageeks.com
2026-07-02 04:17:17
(2 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-30 04:20:26
(2 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฌ๐ง
pinguin
2026-06-19 15:53:44
(2 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฌ๐ง
Steve
2026-04-29 00:39:39
(4 months ago)
SQL Injection Attempts
Brute-Force
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-04-04 02:15:46
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 22:15:40.665806 2026] [security2:error] [pid 25778:tid 25778] [client 172.70.231.39:10150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puckerbackbikinis.puckerbikini.com"] [uri "/.env.dev"] [unique_id "adB0TOeroxp_CzoPwRf66gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 15:54:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 11:54:05.242955 2026] [security2:error] [pid 10848:tid 10848] [client 172.70.231.39:10290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.directcch.com"] [uri "/.env.test"] [unique_id "ac6RHc1Mr_6NNgC3uDjUPwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
LotPhantom
2026-03-30 19:19:13
(5 months ago)
2026/03/30 19:19:11 [error] 109153#109153: *62796 access forbidden by rule, client: 172.70.231.39, s ...
show more
2026/03/30 19:19:11 [error] 109153#109153: *62796 access forbidden by rule, client: 172.70.231.39, server: api.bridginggaps.tech, request: "GET /api/.env HTTP/2.0", host: "api.bridginggaps.tech"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 15:54:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 11:54:13.387382 2026] [security2:error] [pid 2646:tid 2646] [client 172.70.231.39:9594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cayman-islands-real-estate.com"] [uri "/.env.backup"] [unique_id "acaoJc0heog_l-_15qS66QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 13:11:52
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:11:48.604682 2026] [security2:error] [pid 18516:tid 18516] [client 172.70.231.39:10921] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.brevardzen.org"] [uri "/.env.development"] [unique_id "acaCFNisdVgxrWvptMjkZwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 11:37:14
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 07:37:09.666819 2026] [security2:error] [pid 21568:tid 21568] [client 172.70.231.39:12161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kountz.org"] [uri "/.git/refs/heads/main"] [unique_id "acZr5TcSWwWzSzQycf7lHQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 23:23:34
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 19:23:27.683145 2026] [security2:error] [pid 13375:tid 13375] [client 172.70.231.39:10070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oposicionesyconcursos.es.creartest.com"] [uri "/config/.env"] [unique_id "acW_72SwUSNVZeHQ3tB0ggAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 16:41:51
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.231.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 12:41:23.469895 2026] [security2:error] [pid 26731:tid 26731] [client 172.70.231.39:12767] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.debsniderart.com"] [uri "/.env.development"] [unique_id "acVhs2p2677_FJYeffYOWAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack