Anonymous
2026-06-06 06:03:36
(1 week ago)
31.134.14.45 - - [06/Jun/2026:06:03:35 +0000] "GET /cgi-bin/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%3 ...
show more
31.134.14.45 - - [06/Jun/2026:06:03:35 +0000] "GET /cgi-bin/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/.%%32%65/etc/shells HTTP/1.1" 400 461 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-05-06 09:19:50
(1 month ago)
Forum/form spam
Web Spam
๐ต๐ฑ
sefinek.net
2026-02-22 00:30:21
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from FI.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from FI.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: /genshin-stella-mod | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฎ๐ณ
Mcshield.org
2025-12-01 03:28:52
(6 months ago)
Possible port scan detected from 31.134.14.45 (masscan/nmap signature)
Email Spam
Port Scan
๐ต๐ฑ
sefinek.net
2025-11-20 01:10:58
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from FI.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from FI.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Linux x86_64; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
kjaerulff
2025-11-19 19:12:09
(6 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
octageeks.com
2025-11-18 05:09:45
(7 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
Anonymous
2025-11-16 13:53:28
(7 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.16 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.16 is noted in report timestamp
show less
Hacking
Brute-Force
๐จ๐ญ
backslash
2025-11-12 16:35:02
(7 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ฎ๐ฉ
RasyiidWho
2025-11-10 23:21:03
(7 months ago)
ip112.20 . 31.134.14.45 - - [11/Nov/2025:06:21:02 +0700] "GET /wp-login.php HTTP/1.1" 404 548 "-" "M ...
show more
ip112.20 . 31.134.14.45 - - [11/Nov/2025:06:21:02 +0700] "GET /wp-login.php HTTP/1.1" 404 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203"
...
show less
DDoS Attack
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-06 02:52:48
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 31.134.14.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 31.134.14.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 05 21:52:41.009424 2025] [security2:error] [pid 1290:tid 1290] [client 31.134.14.45:13739] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bernsteinip.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bernsteinip.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aQwNeUoskXHQocqzKLPmDAAAACA"], referer: https://bernsteinip.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-04 09:58:51
(7 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
Anonymous
2025-06-25 12:07:00
(11 months ago)
Message meets Alert condition
The following critical firewall event was detected: SSL VPN login fai ...
show more
Message meets Alert condition
The following critical firewall event was detected: SSL VPN login fail.
date=2025-06-24 time=16:33:48 devname=FortiGate-200F devid=FG200FT922906136 eventtime=1750800828346136886 tz="-0500" logid="0101039426" type="event" subtype="vpn" level="alert" vd="root" logdesc="SSL VPN login fail" action="ssl-login-fail" tunneltype="ssl-web" tunnelid=0 remip=31.134.14.45 srccountry="United States" user="djohnson" group="N/A" dst_host="N/A" reason="sslvpn_login_unknown_user" msg="SSL user failed to logged in"
show less
VPN IP
๐บ๐ธ
ChamberofCommerce.com
2021-09-18 11:04:04
(4 years ago)
Unauthorized Bot Spam - Based on More than 100 Connections Per Minute - Per Minute Requests:273
Bad Web Bot