๐ง๐ช
madeit
2026-09-24 16:41:52
(4 days ago)
Web App Attack
๐ง๐ช
madeit
2026-08-19 14:15:38
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 15:41:41
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 11:41:35.602008 2026] [security2:error] [pid 27936:tid 27936] [client 172.71.190.212:12592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fetchamreadingroom.org.my-spec.com"] [uri "/.git/config"] [unique_id "aoMrr2vcMww_0sz6Ss4s8wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 13:39:52
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 09:39:45.017582 2026] [security2:error] [pid 8957:tid 8957] [client 172.71.190.212:10324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.brickyardinn.com"] [uri "/.git/config"] [unique_id "aoMPIZ1Zp-z8oMIsnrGutwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 02:19:58
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 22:19:52.147101 2026] [security2:error] [pid 27876:tid 27876] [client 172.71.190.212:11861] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.whodatnation.com"] [uri "/.git/HEAD"] [unique_id "aoEeSOnmwSClQXmBFTUN-QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 11:05:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 07:04:59.417458 2026] [security2:error] [pid 1802646:tid 1802646] [client 172.71.190.212:10435] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lancehancock.com"] [uri "/.git/config"] [unique_id "anxTW60lidSYRQ7qJW2VugAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 01:47:33
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 21:47:27.138175 2026] [security2:error] [pid 3517924:tid 3517924] [client 172.71.190.212:9431] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.syconline.com"] [uri "/.git/HEAD"] [unique_id "anvQr4Y3tXGj6jIbPLolHAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 00:52:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 20:52:04.393178 2026] [security2:error] [pid 1155331:tid 1155405] [client 172.71.190.212:13365] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.annthornycroft.com"] [uri "/.git/HEAD"] [unique_id "anvDtPA6lwaxmj18TVzgjQAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 16:02:01
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 12:01:54.222625 2026] [security2:error] [pid 18007:tid 18007] [client 172.71.190.212:13553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.cameronbenefits.com"] [uri "/.git/config"] [unique_id "antHcnLZSA2ob4V_VHPR3wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-06 09:46:56
(1 month ago)
Web App Attack
๐ฉ๐ช
abdubhai
2026-07-26 14:32:32
(2 months ago)
172.71.190.212 - - [26/Jul/2026:
...
Brute-Force
๐ฆ๐บ
oncord
2026-06-20 17:31:39
(3 months ago)
Form spam
Web Spam
๐ฌ๐ง
pinguin
2026-06-16 01:43:00
(3 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (POST method) ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (POST method)
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-05-14 22:07:05
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-13.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-01 20:38:54
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 16:38:47.919134 2026] [security2:error] [pid 755:tid 755] [client 172.71.190.212:11049] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.tell-me-first.com"] [uri "/private/.env"] [unique_id "ac2CV_7L4T4njZPAFCX46gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack