๐ฉ๐ช
hchristo
2026-07-27 13:53:08
(3 days ago)
[Mon Jul 27 15:53:06.722654 2026] [proxy_fcgi:error] [pid 34971:tid 35012] [remote 185.198.243.118:5 ...
show more
[Mon Jul 27 15:53:06.722654 2026] [proxy_fcgi:error] [pid 34971:tid 35012] [remote 185.198.243.118:50055] AH01071: Got error 'Primary script unknown', referer: http://rap-luenen.de/shelp.php
[Mon Jul 27 15:53:07.084875 2026] [proxy_fcgi:error] [pid 34971:tid 35003] [remote 185.198.243.118:50055] AH01071: Got error 'Primary script unknown', referer: http://rap-luenen.de/cord.php
[Mon Jul 27 15:53:07.321561 2026] [proxy_fcgi:error] [pid 34971:tid 34988] [remote 185.198.243.118:50055] AH01071: Got error 'Primary script unknown', referer: http://rap-luenen.de/dex.php
[Mon Jul 27 15:53:07.794050 2026] [proxy_fcgi:error] [pid 34971:tid 34985] [remote 185.198.243.118:50055] AH01071: Got error 'Primary script unknown', referer: http://rap-luenen.de//zwso.php
[Mon Jul 27 15:53:08.317091 2026] [proxy_fcgi:error] [pid 34971:tid 34980] [remote 185.198.243.118:50055] AH01071: Got error 'Primary script unknown', referer: http://rap-luenen.de/bolt.php
...
show less
Brute-Force
๐ซ๐ท
Octopuce
2026-07-27 13:51:31
(3 days ago)
Aggressive web search of vulnerable pages: /ms-themes.php /file.php /flower.php /gifclass.php /bless ...
show more
Aggressive web search of vulnerable pages: /ms-themes.php /file.php /flower.php /gifclass.php /bless.php /class-t.api.php /blurbs.php /akcc.php ...
show less
Web App Attack
Anonymous
2026-07-10 02:52:25
(2 weeks ago)
Banned by Fail2Ban on server
Web App Attack
๐ซ๐ท
tecnicorioja
2026-07-09 22:00:55
(2 weeks ago)
wp-login attack [09/Jul/2026:19:19:56
Brute-Force
Web App Attack
๐ฉ๐ช
maxpower
2026-07-09 20:10:29
(2 weeks ago)
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 185.198.243.118 (GB/United Kingdom/-): 1 in t ...
show more
(aggressive_scanner) REGOLA 9 - Aggressive Web Scanner 185.198.243.118 (GB/United Kingdom/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 185.198.243.118 - - [09/Jul/2026:22:10:25 +0200] "GET /000.php HTTP/1.1" 301 281 "-" "Go-http-client/1.1" "185.198.243.118" host=tikitakaplanet.it
show less
Port Scan
๐บ๐ธ
agenciahypelab.com.br
2026-07-08 17:24:38
(3 weeks ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐ฌ๐ง
consul.to
2026-03-14 20:46:49
(4 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
mrcrassi
2026-03-13 01:20:59
(4 months ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST meth ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /wp-login.php
UA: Mozilla/5.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
dynamix
2026-02-10 20:41:35
(5 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
Penny Packer
2026-02-08 00:53:40
(5 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-16 06:13:42
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 185.198.243.118 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.198.243.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 16 01:13:36.027315 2025] [security2:error] [pid 24959:tid 24959] [client 185.198.243.118:30249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goepf.com"] [uri "/.env"] [unique_id "aUD4kFqIk9t1KglUgzGa-wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2025-12-16 05:10:17
(7 months ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ง๐ช
cmbplf
2025-12-15 22:05:42
(7 months ago)
254 requests with url.path */.well-known/acme-challenge/*.php
Brute-Force
Bad Web Bot
๐ฌ๐ง
Swiptly
2025-12-15 11:23:52
(7 months ago)
Excessive 403/404/405 PHP/CMS errors from scanning or broken bots
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-14 08:36:51
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 185.198.243.118 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 185.198.243.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 14 03:36:45.157616 2025] [security2:error] [pid 6280:tid 6280] [client 185.198.243.118:55425] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "insectpolitics.com"] [uri "/.env"] [unique_id "aT53HfXgCjXnroucrt2vvQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack