๐บ๐ธ
TPI-Abuse
2026-05-19 02:14:39
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 202.5.53.93 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 202.5.53.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 22:14:27.916271 2026] [security2:error] [pid 21804:tid 21804] [client 202.5.53.93:4285] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||difusionens.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "difusionens.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agvHg41q7BwzGwD86e5TMAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-19 01:01:44
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 202.5.53.93 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 202.5.53.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 21:01:35.105695 2026] [security2:error] [pid 26552:tid 26552] [client 202.5.53.93:13606] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cliniquecavalancia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cliniquecavalancia.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agu2b-8s_emF8pw8vQKf9QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-05-18 22:26:45
(2 weeks ago)
Unauthorized access to webpage admin
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-05-18 21:03:38
(2 weeks ago)
Multiple attempts to attack Wordpress XMLRPC detected: access blocked.
Web App Attack
๐ซ๐ท
ELYAZ
2026-05-18 19:14:40
(2 weeks ago)
(wordpress) Failed wordpress login from 202.5.53.93 (BD/Bangladesh/-): (CF_ENABLE)
Brute-Force
๐บ๐ธ
jcbriar
2025-11-05 12:59:33
(7 months ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐ธ๐ฌ
pusathosting.com
2025-11-01 19:10:06
(7 months ago)
24ds22 bruteforce
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2025-10-31 23:26:42
(7 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ซ๐ท
uhlhosting
2025-10-29 10:02:08
(7 months ago)
europaspedlogistics.ro 202.5.53.93 - - [29/Oct/2025:11:02:03.600334 +0100] "POST /wp-comments-post.p ...
show more
europaspedlogistics.ro 202.5.53.93 - - [29/Oct/2025:11:02:03.600334 +0100] "POST /wp-comments-post.php HTTP/1.1" 403 2579 "-" "-" aQHmG4wO0Z3DHpi_X--logAAAI0 "-" /apache/20251029/20251029-1102/20251029-110203-aQHmG4wO0Z3DHpi_X--logAAAI0 0 1528 md5:624fb98c520f4fc4daa7383fbafcd115
europaspedlogistics.ro 202.5.53.93 - - [29/Oct/2025:11:02:04.838242 +0100] "POST /wp-comments-post.php HTTP/1.1" 403 2579 "-" "-" aQHmHIjh_pmL_qo9WkgygwAAAMU "-" /apache/20251029/20251029-1102/20251029-110204-aQHmHIjh_pmL_qo9WkgygwAAAMU 0 1528 md5:6e2c8298a8c84e03afbd53249a51bcf2
europaspedlogistics.ro 202.5.53.93 - - [29/Oct/2025:11:02:06.052345 +0100] "POST /wp-comments-post.php HTTP/1.1" 403 2579 "-" "-" aQHmHYjh_pmL_qo9WkgyhAAAAMg "-" /apache/20251029/20251029-1102/20251029-110206-aQHmHYjh_pmL_qo9WkgyhAAAAMg 0 1525 md5:a56fc59ef5469378b541519f318ee14f
europaspedlogistics.ro 202.5.53.93 - - [29/Oct/2025:11:02:07.295479 +0100] "POST /wp-comments-post.php HTTP/1.1" 403 2579 "-" "-" aQHmH4wO0Z3DHpi_X--lowAA
...
show less
DDoS Attack
Brute-Force
๐ซ๐ท
dynamix
2025-10-28 19:53:18
(7 months ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2025-10-28 19:45:08
(7 months ago)
IM360 WAF: Block Drupal/Joomla spammers
Brute-Force
Bad Web Bot
๐ฉ๐ช
1gz
2025-10-01 20:21:53
(8 months ago)
Triggered Cloudflare WAF (firewallManaged) from BD.
Action taken: BLOCK
Protocol: HTTP/2 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from BD.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (X11; U; Linux i686 (x86_64); en-US) AppleWebKit/532.0 (KHTML, like Gecko) Chrome/3.0.197.0 Safari/532.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฒ๐พ
Rizzy
2025-09-30 13:23:41
(8 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฌ๐ง
Silly Development
2025-09-28 11:28:18
(8 months ago)
Malicious activity detected from 45326 BBTS-AS-AP Broad Band Telecom Services Ltd towards host paid. ...
show more
Malicious activity detected from 45326 BBTS-AS-AP Broad Band Telecom Services Ltd towards host paid.sillydev.co.uk (POST HTTP/2) @ 2025-09-28T11:28:18Z (16 occurrences)
show less
DDoS Attack
Exploited Host
๐ฌ๐ง
Silly Development
2025-09-28 10:55:09
(8 months ago)
Malicious activity detected from 45326 BBTS-AS-AP Broad Band Telecom Services Ltd towards host paid. ...
show more
Malicious activity detected from 45326 BBTS-AS-AP Broad Band Telecom Services Ltd towards host paid.sillydev.co.uk (POST HTTP/2) @ 2025-09-28T10:55:09Z (5 occurrences)
show less
DDoS Attack
Exploited Host