๐บ๐ธ
mawan
2026-06-23 00:36:55
(1 day ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 17:22:18
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 13:22:14.040559 2026] [security2:error] [pid 7821:tid 7846] [client 172.70.242.219:10968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aviador.xyz.venezuelaguia.com"] [uri "/.git/config"] [unique_id "aiRXRuXZts9-FQ3g0FJ5xAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 20:41:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 16:41:55.140709 2026] [security2:error] [pid 29105:tid 29105] [client 172.70.242.219:9828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fee-seize.com"] [uri "/.git/config"] [unique_id "aiM0k-GWpLmLemYN16Ne1QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 14:31:26
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 10:31:21.352714 2026] [security2:error] [pid 26667:tid 26667] [client 172.70.242.219:12667] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "makegoodsausage.com"] [uri "/.git/config"] [unique_id "ah7pOabD81cQeW8ONwhqmAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2026-05-28 07:53:21
(3 weeks ago)
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฎ๐ฉ
Burayot
2026-05-24 12:51:49
(1 month ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.70.242.219 (DE/Germany/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.70.242.219 (DE/Germany/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
WellSpring
2026-05-19 20:53:59
(1 month ago)
wordpress scan on 703.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-05-15 06:48:05
(1 month ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-06 23:21:13
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 19:21:10.187549 2026] [security2:error] [pid 13620:tid 13620] [client 172.70.242.219:10664] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.campfearnc.com"] [uri "/.env"] [unique_id "afvM5kRW7GRNS0y51gTu3gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-26 03:16:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 23:15:57.798830 2026] [security2:error] [pid 12065:tid 12065] [client 172.70.242.219:13562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marketask.com"] [uri "/.git/config"] [unique_id "ae2DbdYskVeEYsUkoslPvwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hary74656
2026-04-04 23:22:43
(2 months ago)
[Sun Apr 05 01:22:31.158758 2026] [security2:error] [pid 305251:tid 305328] [client 172.70.242.219:9 ...
show more
[Sun Apr 05 01:22:31.158758 2026] [security2:error] [pid 305251:tid 305328] [client 172.70.242.219:9452] [client 172.70.242.219] ModSecurity: Access denied with code 403 (phase 2). Pattern match "Search Engine" at TX:httpbl_msg. [file "/usr/share/modsecurity-crs/rules/REQUEST-910-IP-REPUTATION.conf"] [line "199"] [id "910150"] [msg "HTTP Blacklist match for search engine IP"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-reputation-ip"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [hostname "nova.weavernet.at"] [uri "/.env2"] [unique_id "adGdNvyupcqE0AmYHoYNCwAAAnk"]
[Sun Apr 05 01:22:31.182081 2026] [security2:error] [pid 305251:tid 305325] [client 172.70.242.219:9452] [client 172.70.242.219] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/.env" at REQUEST_FILENAME. [file "/usr/share/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Res
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 15:29:47
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 11:29:43.648670 2026] [security2:error] [pid 12451:tid 12479] [client 172.70.242.219:9217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.soonervolunteer.com"] [uri "/.git/refs/heads/main"] [unique_id "adEuZ6gTnJ5UXYYOOPqezwAAAVg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 15:01:09
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 11:01:04.962666 2026] [security2:error] [pid 13362:tid 13362] [client 172.70.242.219:13075] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "osiabellamerica.org.louiebluemartini.com"] [uri "/.git/logs/HEAD"] [unique_id "adEnsMpdbif_W3-VlCe3XAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 13:38:57
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.242.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 09:38:51.936228 2026] [security2:error] [pid 30992:tid 30992] [client 172.70.242.219:14324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.sazisirel.com"] [uri "/.git/config"] [unique_id "adEUa5iaRdfOdIh14lFF0AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-04-04 04:00:39
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-197)
Hacking