๐บ๐ธ
TPI-Abuse
2026-06-21 06:35:13
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 02:35:03.663488 2026] [security2:error] [pid 6039:tid 6058] [client 172.71.172.231:12736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.freeziyadyaghi.newtrendmag.org"] [uri "/.env.local"] [unique_id "ajeGF4BbCOnm28uyfYHAFwAAAA8"], referer: https://www.google.com/search?q=www.freeziyadyaghi.newtrendmag.org
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 10:29:12
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 06:29:05.037573 2026] [security2:error] [pid 10724:tid 10724] [client 172.71.172.231:14266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.formationone.com"] [uri "/.git/config"] [unique_id "ai6Ccc3OoTS0bMv6zdeaagAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2026-06-13 10:24:33
(1 week ago)
Authentication attack attempt. CMS Brute Force - Access Forbidden
Brute-Force
Web App Attack
๐ซ๐ฎ
nNordic
2026-06-09 09:12:18
(1 week ago)
Connection attempt blocked by IDS/IPS from 172.71.172.231/32
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 05:02:33
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:02:27.913705 2026] [security2:error] [pid 32227:tid 32237] [client 172.71.172.231:12041] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deyyoungart.com"] [uri "/.git/HEAD"] [unique_id "aieeY_a5UXggZdSOF1VCuAAAAEc"], referer: https://www.google.com/search?q=deyyoungart.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 18:03:49
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 14:03:41.916502 2026] [security2:error] [pid 8942:tid 8942] [client 172.71.172.231:13500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "m.bluegrassexpressband.com"] [uri "/.git/config"] [unique_id "aiRg_WY6Di0iCix2yJwRPAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2026-06-04 05:48:54
(2 weeks ago)
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /trace.axd
UA: Mozilla/5.0 (l9scan/2.0.8393e26323e28313e2430313; +https://leakix.net)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
mnsf
2026-05-30 10:05:43
(3 weeks ago)
Abuse Detected (2)
Brute-Force
Web App Attack
Anonymous
2026-05-22 00:32:14
(4 weeks ago)
wp-admin probe on non-WP site detected. Time: 2026-05-22T00:32:14+00:00, IP: 172.71.172.231, Port: 8 ...
show more
wp-admin probe on non-WP site detected. Time: 2026-05-22T00:32:14+00:00, IP: 172.71.172.231, Port: 80, Method: GET, URL: http://clansbase.com/wp-admin/install.php?step=1, Attempts today: 1, Different usernames: 0, Payload:
show less
Brute-Force
Web App Attack
๐ซ๐ท
omartin
2026-05-20 18:48:57
(1 month ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ท๐บ
DZBOT
2026-05-20 16:27:21
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 09:13:50
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 05:13:42.647487 2026] [security2:error] [pid 27472:tid 27472] [client 172.71.172.231:11486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garanzuayrec.com"] [uri "/.env.dev"] [unique_id "agbjxgPr1C067Qcruldg8wAAABc"], referer: https://www.google.com/search?q=garanzuayrec.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 06:44:36
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 02:44:28.085309 2026] [security2:error] [pid 27815:tid 27815] [client 172.71.172.231:11592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fiestadj.com.mx"] [uri "/.env.production"] [unique_id "agbAzJG-Kr6W2jO7sx5mwAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
wimaxnz
2026-05-14 08:14:01
(1 month ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
๐ซ๐ท
omartin
2026-05-13 20:47:43
(1 month ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack