๐ซ๐ฎ
as211431.net
2026-04-06 12:33:08
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
mnsf
2026-04-05 01:05:53
(2 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐ง๐ท
Halux
2026-04-04 23:37:21
(2 months ago)
178.239.198.73 Probing protected path or service
Web App Attack
Anonymous
2026-03-17 13:00:03
(2 months ago)
| [Normal/United Kingdom] Aggressive IP 178.239.198.73 (~350 hits). Type: DoS Defender- Web server 4 ...
show more
| [Normal/United Kingdom] Aggressive IP 178.239.198.73 (~350 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ฆ
URAN Publishing Service
2026-03-15 08:25:24
(2 months ago)
178.239.198.73 - - [15/Mar/2026:10:25:22 +0200] "GET /wp-includes/customize/dedi1.php HTTP/1.1" 404 ...
show more
178.239.198.73 - - [15/Mar/2026:10:25:22 +0200] "GET /wp-includes/customize/dedi1.php HTTP/1.1" 404 287 "-" "Mozilla/5.0 (Windows NT 10.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
178.239.198.73 - - [15/Mar/2026:10:25:23 +0200] "GET /wp-admin/js/wp-conflg.php HTTP/1.1" 404 287 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36"
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-03-03 03:49:44
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
EGP Abuse Dept
2026-03-03 02:53:22
(3 months ago)
Scanning for web/db/file exploits on www.donkerbrillen.nl
SQL Injection
Bad Web Bot
Web App Attack
Anonymous
2026-03-02 19:16:48
(3 months ago)
Multiple, malicious web requests detected
Port Scan
Hacking
Anonymous
2026-03-02 14:40:39
(3 months ago)
ALFA.TEaM.Web.Shell
Web App Attack
๐ณ๐ฑ
Site.eu
2026-03-02 04:26:46
(3 months ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
ger-stg-sifi1
2026-02-28 21:28:52
(3 months ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฌ๐ง
consul.to
2026-02-23 06:19:08
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 04:18:49
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 178.239.198.73 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 178.239.198.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 23:18:45.944260 2026] [security2:error] [pid 7206:tid 7206] [client 178.239.198.73:29749] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||loriatrading.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "loriatrading.com"] [uri "/old/backup.sql"] [unique_id "aZFJJZz2rE6pAVcAZe0NWwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-03 11:26:03
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 178.239.198.73 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 178.239.198.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 06:25:59.173909 2026] [security2:error] [pid 31751:tid 31751] [client 178.239.198.73:39283] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||matteozacchino.dev|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "matteozacchino.dev"] [uri "/back/www.sql"] [unique_id "aYHbR1qijVy6d9x4R8JvvgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-30 04:41:15
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 178.239.198.73 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 178.239.198.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 23:41:08.459622 2025] [security2:error] [pid 31783:tid 31783] [client 178.239.198.73:47567] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||uppermotradingco.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "uppermotradingco.com"] [uri "/old/www.sql"] [unique_id "aVNX5FPqTxBcGDDno_Ln4QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack