๐ซ๐ท
IRISIO
2026-10-01 08:28:48
(2 days ago)
scans/SQL injection/spam posts : 3346 queries
Web App Attack
SQL Injection
๐ณ๐ฑ
ConsulHosting
2026-10-01 07:25:02
(2 days ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
Anonymous
2026-10-01 05:30:03
(2 days ago)
CrowdSec decision: crowdsecurity/http-path-traversal-probing (origin: crowdsec)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-10-01 05:01:19
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.184.73.71 (71.73.184.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.73.71 (71.73.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 01:01:15.909767 2026] [security2:error] [pid 2874:tid 2874] [client 35.184.73.71:47848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "socialstudiesforkids.com"] [uri "/static../.env"] [unique_id "ar3pG4K_0vZFdwCJOpWDhwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-10-01 04:01:46
(2 days ago)
3.190 requests from abuseipdb.com blacklisted IP (1yr5mos6d)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-01 03:31:32
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 35.184.73.71 (71.73.184.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 35.184.73.71 (71.73.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 23:31:27.935331 2026] [security2:error] [pid 10490:tid 10490] [client 35.184.73.71:34592] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sophie.hotelausland.com|F|2"] [data ".hotelausland.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sophie.hotelausland.com"] [uri "/z9x8c7v6b5-debug-trigger-sophie.hotelausland.com"] [unique_id "ar3UDy1pGJrAben9futj_AAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
KTSTechnology
2026-10-01 02:44:02
(3 days ago)
Web vulnerability scanning detected by our ISP firewall
Web App Attack
๐บ๐ธ
SketchyDude
2026-10-01 01:58:02
(3 days ago)
Banned by Fail2Ban jail: apache-fakegooglebot
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-01 01:29:30
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 35.184.73.71 (71.73.184.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 35.184.73.71 (71.73.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 21:29:24.047454 2026] [security2:error] [pid 23376:tid 23376] [client 35.184.73.71:37374] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.southshorestreetrods.com|F|2"] [data ".southshorestreetrods.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.southshorestreetrods.com"] [uri "/z9x8c7v6b5-debug-trigger-www.southshorestreetrods.com"] [unique_id "ar23dFhM9y9o6QeT7iw6DAAAADQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-01 00:26:22
(3 days ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-201)
show less
Bad Web Bot
๐บ๐ธ
1gz
2026-10-01 00:07:48
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
Protocol: HTTP/2 (POST me ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: CHALLENGE
Protocol: HTTP/2 (POST method)
Endpoint: /v1/graphql
UA: Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
mnsf
2026-09-30 19:05:59
(3 days ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐ฉ๐ช
creoline GmbH
2026-09-30 18:14:03
(3 days ago)
[WAF] Multiple suspicious HTTP requests has been blocked
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-30 16:52:21
(3 days ago)
[cb-03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.184.73.71 - - [30/Sep/2026:18:52:11 +0200] "GET /media../.env HTTP/2.0" 403 373 "-" "Mozilla/5.0 (compatible; Bravebot/1.0; +https://brave.com/search/)"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-30 16:07:48
(3 days ago)
Web attack/malicious scanning detected
Web App Attack