πΊπΈ
mnsf
2026-05-28 22:07:09
(1 week ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
Anonymous
2026-03-26 20:59:06
(2 months ago)
Forum/form spam
Web Spam
πΊπΈ
cyfordtechnologies.com
2026-03-09 08:12:36
(2 months ago)
High-abuse ASN prefix: 216.26. : Reported by Cyford API
Web App Attack
π¬π§
relianoid.com
2026-03-08 20:42:51
(2 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
Anonymous
2026-03-07 12:01:54
(2 months ago)
Forum/form spam
Web Spam
π¦πΊ
oncord
2026-02-15 06:59:13
(3 months ago)
Form spam
Web Spam
π¦πΊ
oncord
2026-02-13 15:38:43
(3 months ago)
Form spam
Web Spam
π΅π±
sefinek.net
2025-12-23 04:38:27
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-12-02 17:34:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 12:34:35.634733 2025] [security2:error] [pid 7738:tid 7766] [client 216.26.233.145:25933] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "torreymanagement.com"] [uri "/.git/HEAD"] [unique_id "aS8jK05h6ba00aENyJTFAwAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 15:35:00
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 10:34:57.071690 2025] [security2:error] [pid 5354:tid 5354] [client 216.26.233.145:28027] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "todayhelp.com"] [uri "/.git/HEAD"] [unique_id "aS8HIaqituVWJzTSFL-pjgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 13:13:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 08:13:04.056848 2025] [security2:error] [pid 29777:tid 29777] [client 216.26.233.145:27801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rayeliotschwartz.com"] [uri "/.git/HEAD"] [unique_id "aS7l4ExnPqYfZyt5nN2ndwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 05:34:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:34:05.128320 2025] [security2:error] [pid 22455:tid 22455] [client 216.26.233.145:58693] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gdg1.com"] [uri "/.env"] [unique_id "aS56TVwUzLSIW0d6RSTpuwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 05:01:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:01:44.272728 2025] [security2:error] [pid 3043:tid 3043] [client 216.26.233.145:21831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "muskogeecleaning.com"] [uri "/.git/HEAD"] [unique_id "aS5yuHg8kILYXfgTwjZoRAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-02 04:40:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.233.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:40:01.901195 2025] [security2:error] [pid 10502:tid 10502] [client 216.26.233.145:37439] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lovechicks.com"] [uri "/.svn/wc.db"] [unique_id "aS5toY239scx-qbS-M1K0QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 10:21:36
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack