๐บ๐ธ
TPI-Abuse
2026-06-25 18:07:10
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 14:07:03.809518 2026] [security2:error] [pid 27200:tid 27200] [client 172.70.248.4:9673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.built4ullc.com.jbcllcnet.com"] [uri "/.env.old"] [unique_id "aj1uR8mEywXeshzxUjlkhAAAAB4"], referer: https://www.google.com/search?q=www.built4ullc.com.jbcllcnet.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 01:12:59
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 21:12:54.602266 2026] [security2:error] [pid 9536:tid 9536] [client 172.70.248.4:13843] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "georgelaceysales.com"] [uri "/.env.production"] [unique_id "ajyAllnQHE-bs7adkdHx4QAAABI"], referer: https://www.google.com/search?q=georgelaceysales.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 07:01:10
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 03:01:04.685770 2026] [security2:error] [pid 6058:tid 6058] [client 172.70.248.4:12699] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.genlogoai.lobibilisim.com"] [uri "/.env.old"] [unique_id "ajeMMEG9uILbMdnrNk1e_gAAABE"], referer: https://www.google.com/search?q=www.genlogoai.lobibilisim.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-20 06:07:22
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 20 02:07:14.791372 2026] [security2:error] [pid 9410:tid 9410] [client 172.70.248.4:10102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bwill.dev"] [uri "/.git/config"] [unique_id "ajYuEqZYCulfAlp1od-DtAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ALPHANET
2026-06-14 15:25:09
(1 week ago)
web exploits
Hacking
Exploited Host
Web App Attack
Anonymous
2026-06-11 23:07:35
(2 weeks ago)
Repeated unauthorized connection attempts to restricted service observed.
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-09 10:06:40
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ฆ๐น
nomzamo
2026-06-09 05:23:13
(2 weeks ago)
Fail2Ban reported: nginx-noscript
Brute-Force
Bad Web Bot
Anonymous
2026-06-08 07:15:46
(2 weeks ago)
Repeated unauthorized connection attempts to restricted service observed.
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 07:11:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 03:11:33.192721 2026] [security2:error] [pid 23053:tid 23053] [client 172.70.248.4:12701] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kripner.net"] [uri "/.git/config"] [unique_id "aiPIJSwU-s5QaZ9ExOFJtAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-06-05 07:58:36
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 20:21:28
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 16:21:23.293165 2026] [security2:error] [pid 19485:tid 19497] [client 172.70.248.4:9798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newtrendmag.org"] [uri "/.git/config"] [unique_id "aiHeQ5GFy5e1Ro4ZcyJqtAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2026-06-04 19:53:59
(3 weeks ago)
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /aws.config.js
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-04 07:30:39
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 03:30:34.082487 2026] [security2:error] [pid 25870:tid 25870] [client 172.70.248.4:9541] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hiddenhistory.info"] [uri "/.git/config"] [unique_id "aiEpmk80fI_RvgsZtVKeOwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 12:30:47
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 08:30:44.321649 2026] [security2:error] [pid 16702:tid 16702] [client 172.70.248.4:12900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grdigitaldesigns.com"] [uri "/.git/config"] [unique_id "ah7M9JxM37XzpIXI2EbIlQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack