๐ซ๐ท
ELYAZ
2026-06-14 10:35:17
(1 day ago)
(y4) Failed scan -byebye- from 209.50.179.6 (BR/Brazil/-): (CF_ENABLE)
Hacking
๐ฒ๐น
Malta
2026-06-12 08:46:18
(3 days ago)
209.50.179.6 - - [12/Jun/2026:10:46:18 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintosh; ...
show more
209.50.179.6 - - [12/Jun/2026:10:46:18 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.6 Safari/605.1.15"
show less
Hacking
Web App Attack
๐ฒ๐น
Malta
2026-06-10 02:52:32
(5 days ago)
209.50.179.6 - - [10/Jun/2026:04:52:32 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintosh; ...
show more
209.50.179.6 - - [10/Jun/2026:04:52:32 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7; rv:121.0) Gecko/20100101 Firefox/121.0"
show less
Hacking
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-08 10:06:50
(1 week ago)
(y4) Failed scan -byebye- from 209.50.179.6 (BR/Brazil/-): (CF_ENABLE)
Hacking
๐ฒ๐ฝ
octageeks.com
2026-05-30 04:13:48
(2 weeks ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ซ๐ท
dynamix
2026-02-13 13:39:19
(4 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
myagent.site
2026-02-12 17:53:52
(4 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐บ๐ธ
TPI-Abuse
2025-11-25 07:13:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.179.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.179.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:13:09.317775 2025] [security2:error] [pid 23740:tid 23740] [client 209.50.179.6:54471] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fattoria-rendena.it"] [uri "/.svn/wc.db"] [unique_id "aSVXBcPR_QMO9G_1SLTJ8gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:25:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.179.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.179.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:25:04.392672 2025] [security2:error] [pid 25107:tid 25189] [client 209.50.179.6:16291] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barkdullit.com"] [uri "/.svn/wc.db"] [unique_id "aSQWYHwP-7kPfeYpiM7j0AAAAdE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:45:46
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.179.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.179.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:44:27.898204 2025] [security2:error] [pid 32527:tid 32527] [client 209.50.179.6:45725] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.largeprintjournal.banis-associates.com"] [uri "/.svn/wc.db"] [unique_id "aSPwu0PZSsWDtIwG4N75owAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-11-16 12:22:58
(6 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2025-10-12 06:30:00
(8 months ago)
Unauthorized connection attempt
Brute-Force
๐จ๐ฆ
polycoda
2025-10-11 11:03:40
(8 months ago)
โจ๏ธ Probes for wlwmanifest.xml everywhere
Hacking
Web App Attack
๐ง๐ช
cmbplf
2025-10-10 15:26:42
(8 months ago)
4.767 requests with url.path */xmlrpc.php
Brute-Force
Bad Web Bot
๐ต๐ฑ
sefinek.net
2025-10-08 09:25:15
(8 months ago)
Triggered Cloudflare WAF (firewallCustom) from BR.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from BR.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: //cms/wp-includes/wlwmanifest.xml
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot