๐บ๐ธ
TPI-Abuse
2026-06-06 00:25:45
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 20:25:42.319906 2026] [security2:error] [pid 20840:tid 20864] [client 172.70.246.254:9697] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jrc3.com"] [uri "/.git/config"] [unique_id "aiNpBn36TmDAVo85cDd2WAAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-23 16:40:00
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฌ๐ง
pinguin
2026-05-04 17:04:33
(1 month ago)
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (compatible; CensysInspect/1.1; +https://about.censys.io/)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
www.mammazone.it
2026-04-10 07:20:13
(2 months ago)
[Fri Apr 10 09:20:12.763971 2026] [proxy_fcgi:error] [pid 2187098] [client 172.70.246.254:12010] AH0 ...
show more
[Fri Apr 10 09:20:12.763971 2026] [proxy_fcgi:error] [pid 2187098] [client 172.70.246.254:12010] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
Web App Attack
๐ฉ๐ช
abdubhai
2026-04-09 20:07:48
(2 months ago)
172.70.246.254 - - [10/Apr/2026:
...
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-04-04 13:10:33
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 09:10:25.581919 2026] [security2:error] [pid 9106:tid 9106] [client 172.70.246.254:11786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.brandsrepairandremodeling.com"] [uri "/.git/config"] [unique_id "adENwaoEa2v_MtPgS_-XQQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-04 11:05:53
(2 months ago)
Scanning/Probing (35)
Brute-Force
Web App Attack
Anonymous
2026-04-04 09:35:44
(2 months ago)
Aggressive web scan
Web App Attack
๐ซ๐ท
dynamix
2026-04-03 11:42:42
(2 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 03:03:26
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 23:03:17.382658 2026] [security2:error] [pid 14291:tid 14291] [client 172.70.246.254:11352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdryer.com.daveweisman.com"] [uri "/.git/refs/heads/master"] [unique_id "ac8t9TRynC-MW0XnilRW5gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-01 16:06:59
(2 months ago)
Scanning/Probing (26)
Brute-Force
Web App Attack
๐ฉ๐ช
www.mammazone.it
2026-04-01 14:28:25
(2 months ago)
[Wed Apr 01 16:28:24.782017 2026] [proxy_fcgi:error] [pid 3977649] [client 172.70.246.254:10785] AH0 ...
show more
[Wed Apr 01 16:28:24.782017 2026] [proxy_fcgi:error] [pid 3977649] [client 172.70.246.254:10785] AH01071: Got error 'Primary script unknown'
[Wed Apr 01 16:28:24.874499 2026] [proxy_fcgi:error] [pid 3977649] [client 172.70.246.254:10785] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
๐ซ๐ท
dynamix
2026-03-31 10:58:01
(2 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 09:06:29
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.246.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 05:06:05.148057 2026] [security2:error] [pid 20187:tid 20187] [client 172.70.246.254:10545] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.whenfoodmatters.com.salsberggroup.com"] [uri "/.git/logs/HEAD"] [unique_id "acuOfVe7ZUnjXLhlcTTrjAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-03-30 23:56:01
(2 months ago)
trying wp-login.php/xmlrpc.php 37 times in 1 minutes
Brute-Force
Web App Attack