|
π©πͺ
1gz
|
|
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/2 ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/2 (GET method)
Endpoint: /auth/register
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/28.0 Chrome/130.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
|
Bad Web Bot
|
|
|
Anonymous
|
|
Multiple unauthorized attempt to access to non-existent path
|
Web App Attack
|
|
|
Anonymous
|
|
Multiple unauthorized attempt to access to non-existent path
|
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 23.228.131.6 (23-228-131-6.mci.googlefiber.net) ...
show more
(mod_security) mod_security (id:210730) triggered by 23.228.131.6 (23-228-131-6.mci.googlefiber.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 06 09:54:31.822489 2025] [security2:error] [pid 817725:tid 817725] [client 23.228.131.6:61342] [client 23.228.131.6] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||web50.dnchosting.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "web50.dnchosting.com"] [uri "/mailman/listinfo/board_playbbsa.com"] [unique_id "Z8m3J2fm_RDoaIMVyYaRFQAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 23.228.131.6 (23-228-131-6.mci.googlefiber.net) ...
show more
(mod_security) mod_security (id:210730) triggered by 23.228.131.6 (23-228-131-6.mci.googlefiber.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 14 12:31:30.514687 2025] [security2:error] [pid 28965:tid 28965] [client 23.228.131.6:58698] [client 23.228.131.6] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||web221.dnchosting.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "web221.dnchosting.com"] [uri "/mailman/admindb/lizandjeff_jeffreycopeland.com"] [unique_id "Z4afclClgjQe1cc7z0fHoAAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210730) triggered by 23.228.131.6 (23-228-131-6.mci.googlefiber.net) ...
show more
(mod_security) mod_security (id:210730) triggered by 23.228.131.6 (23-228-131-6.mci.googlefiber.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 11 13:27:15.142724 2025] [security2:error] [pid 3713196:tid 3713196] [client 23.228.131.6:58136] [client 23.228.131.6] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||web142.dnchosting.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "web142.dnchosting.com"] [uri "/mailman/admindb/hardmanfamily_coolestfamilyever.com"] [unique_id "Z4K4A4HE5igFvtx_xhfl6wAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Excessive HTTP/HTTPS connections.
|
Bad Web Bot
|
|
|
π―π΅
mygnuos.tk
|
|
Actively scanning for abnormal web paths
|
Bad Web Bot
Web App Attack
|
|
|
π©πͺ
bescared
|
|
Malicious activity detected: URL probing.
|
Hacking
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Ports: *; Direction: 0; Trigger: CT_LIMIT
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: *; Direction: 0; Trigger: CT_LIMIT
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: *; Direction: 0; Trigger: CT_LIMIT
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: *; Direction: 0; Trigger: CT_LIMIT
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: *; Direction: 0; Trigger: CT_LIMIT
|
Brute-Force
SSH
|
|
|
Anonymous
|
|
Ports: *; Direction: 0; Trigger: CT_LIMIT
|
Brute-Force
SSH
|
|