๐ช๐ธ
masterguru
2026-04-05 05:11:12
(2 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐ฌ๐ง
consul.to
2026-04-05 04:52:38
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 20:47:44
(2 months ago)
(mod_security) mod_security (id:234930) triggered by 178.239.198.106 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:234930) triggered by 178.239.198.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 16:47:38.972572 2026] [security2:error] [pid 14800:tid 14800] [client 178.239.198.106:24715] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\/lib\\\\/php\\\\/connector\\\\.minimal\\\\.php$" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/27_Apps_WPPlugin.conf"] [line "6787"] [id "234930"] [rev "2"] [msg "COMODO WAF: File upload vulnerability in the file manager plugin before 6.9 for WordPress (CVE-2020-25213)||ps-omega.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WPPlugin"] [hostname "ps-omega.com"] [uri "/wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php"] [unique_id "adF46muQmVb4OhbLwxkiKQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-03-17 16:51:00
(2 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-03-15 08:26:09
(2 months ago)
178.239.198.106 - - [15/Mar/2026:10:26:08 +0200] "GET /wp-includes/assets/autoload_classmap.php HTTP ...
show more
178.239.198.106 - - [15/Mar/2026:10:26:08 +0200] "GET /wp-includes/assets/autoload_classmap.php HTTP/1.1" 404 287 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36"
178.239.198.106 - - [15/Mar/2026:10:26:08 +0200] "GET /wp-includes/certificates/about.php HTTP/1.1" 404 287 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36"
...
show less
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-03-01 04:50:03
(3 months ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฒ๐น
Malta
2026-02-28 20:32:04
(3 months ago)
178.239.198.106 - - [28/Feb/2026:21:32:03 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0"
Hacking
Web App Attack
VPN IP
๐บ๐ธ
TPI-Abuse
2026-02-23 09:52:24
(3 months ago)
(mod_security) mod_security (id:240000) triggered by 178.239.198.106 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:240000) triggered by 178.239.198.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 23 04:52:18.019041 2026] [security2:error] [pid 26579:tid 26582] [client 178.239.198.106:38973] ModSecurity: Access denied with code 403 (phase 2). String match ".php" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/24_Apps_Joomla.conf"] [line "74"] [id "240000"] [rev "1"] [msg "COMODO WAF: Protecting Joomla folder||abundancebible.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Joomla"] [hostname "abundancebible.com"] [uri "/images/stories/themes.php"] [unique_id "aZwjUvKFh1Uibpi7WbMWhgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-02-23 07:11:46
(3 months ago)
Multiple WAF Violations
Web App Attack
๐ฏ๐ต
Valhalla
2026-02-19 07:52:02
(3 months ago)
/backups/bak.tar
Hacking
Web App Attack
Anonymous
2026-02-11 15:35:30
(4 months ago)
Unauthorized connection attempt detected in the last 24 hours
Hacking
๐บ๐ธ
TPI-Abuse
2025-12-30 04:50:14
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 178.239.198.106 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 178.239.198.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 23:50:07.047157 2025] [security2:error] [pid 10572:tid 10572] [client 178.239.198.106:63777] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.spectorworld.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.spectorworld.com"] [uri "/restore/mysql.sql"] [unique_id "aVNZ_8byqMGrMLSoKZaQdAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2025-12-30 04:37:57
(5 months ago)
Triggered Cloudflare WAF (firewallManaged) from GB.
Action taken: LOG
Protocol: HTTP/2 (HEAD method) ...
show more
Triggered Cloudflare WAF (firewallManaged) from GB.
Action taken: LOG
Protocol: HTTP/2 (HEAD method)
Endpoint: /bak.zip
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
Hazzard
2025-12-29 17:46:19
(5 months ago)
(wordpress) Failed wordpress login from 178.239.198.106 (GB/United Kingdom/England/London/-/[redacte ...
show more
(wordpress) Failed wordpress login from 178.239.198.106 (GB/United Kingdom/England/London/-/[redacted])
show less
Brute-Force
Anonymous
2025-12-26 16:50:11
(5 months ago)
Unauthorized connection attempt detected in the last 24 hours
Hacking