Anonymous
2026-07-25 20:05:26
(11 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-24 20:29:09
(1 day ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-07-24 20:05:09
(1 day ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-07-24 18:32:50
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
DocNetzwerk
2026-07-24 17:14:32
(1 day ago)
18.117.240.1 (US/United States/ec2-18-117-240-1.us-east-2.compute.amazonaws.com), more than 7 Apache ...
show more
18.117.240.1 (US/United States/ec2-18-117-240-1.us-east-2.compute.amazonaws.com), more than 7 Apache 403 hits
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-24 15:46:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 11:46:40.187750 2026] [security2:error] [pid 463492:tid 463492] [client 18.117.240.1:50386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wp.sonnyvo.com"] [uri "/.git/config"] [unique_id "amOI4KIQiuxIoDNVftF7RQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 13:54:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 09:54:11.911346 2026] [security2:error] [pid 3850649:tid 3850649] [client 18.117.240.1:38816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wp.dtla2028.com"] [uri "/.git/config"] [unique_id "amNug0vJxqE5-yswvA6fbgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 11:16:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 07:16:49.740988 2026] [security2:error] [pid 2262157:tid 2262157] [client 18.117.240.1:60428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wow-tx.com.srtmanagementservices.com"] [uri "/.git/config"] [unique_id "amNJoXpz9ZB4pBkux_6vmgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 05:53:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.comput ...
show more
(mod_security) mod_security (id:210492) triggered by 18.117.240.1 (ec2-18-117-240-1.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 01:53:35.970471 2026] [security2:error] [pid 501943:tid 502039] [client 18.117.240.1:46574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.worldgolfindex.wwwhst.com"] [uri "/.git/config"] [unique_id "amL9352XQy1cURr41E1XZwAAAcM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2025-12-11 21:31:07
(7 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (HEAD metho ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (HEAD method)
Endpoint: /_next/data
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.113 Safari/537.36 Assetnote/1.0.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot