Triggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show moreTriggered Cloudflare WAF (firewallCustom) from CN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 26_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.0 Mobile/15E148 Safari/604.1
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
[SatJun0600:20:55.5483782026][security2:error][pid3187901:tid3188089][client42.193.171.36:0]ModSecur ...
show more[SatJun0600:20:55.5483782026][security2:error][pid3187901:tid3188089][client42.193.171.36:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.aid-web.ch\"][uri\"/\"][unique_id\"aiNLx1_lo1sPUP8wj9SrtQAAAEg\"]\,referer:https://m.baidu.com/s\?word=www.altg.cn
show less
[FriJun0522:42:41.1910072026][security2:error][pid1273068:tid1273178][client42.193.171.36:0]ModSecur ...
show more[FriJun0522:42:41.1910072026][security2:error][pid1273068:tid1273178][client42.193.171.36:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.akastudio.ch\"][uri\"/\"][unique_id\"aiM0wR1SwGjKdixdc79X_AAAAMs\"]\,referer:https://m.baidu.com/s\?word=www.veiez.cn
show less
Unauthorized access attempts:
[GET] /
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 26_0 like Mac OS X) A ...
show moreUnauthorized access attempts:
[GET] /
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 26_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.0 Mobile/15E148 Safari/604.1
show less
Detectors: [NGINX] | Reasons: Nginx: Default server trap hit | Automated scan targeting an unauthori ...
show moreDetectors: [NGINX] | Reasons: Nginx: Default server trap hit | Automated scan targeting an unauthorized host or default server sinkhole | Tech Evidence: Incomplete-Browser-Profile (Missing: Accept, Accept-Encoding, Accept-Language) | UA: Mozilla/5.0 (iPhone; CPU iPhone OS 26_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.0 Mobile/15E148 Safari/604.1
show less
[ThuJun0405:59:33.2230362026][security2:error][pid2740295:tid2740403][client42.193.171.36:0]ModSecur ...
show more[ThuJun0405:59:33.2230362026][security2:error][pid2740295:tid2740403][client42.193.171.36:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.morandi-trasporti.ch\"][uri\"/\"][unique_id\"aiD4JX_JrQPvTNNUfQYdOAAAAJU\"]\,referer:https://m.baidu.com/s\?word=www.wpyc.cn
show less
[WedJun0318:28:08.5332512026][security2:error][pid3864977:tid3865180][client42.193.171.36:0]ModSecur ...
show more[WedJun0318:28:08.5332512026][security2:error][pid3864977:tid3865180][client42.193.171.36:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.shakary.com\"][uri\"/\"][unique_id\"aiBWGDHnrUDU366iCav26wAAAMc\"]\,referer:https://m.baidu.com/s\?word=www.jiebq.cn
show less
Hacking
Web App Attack
Anonymous
FortiWeb WAF: 22 attacks detected. Threat Score: 6600. Types: Client Management(11), GEO IP(11). Ori ...
show moreFortiWeb WAF: 22 attacks detected. Threat Score: 6600. Types: Client Management(11), GEO IP(11). Origin: China.
show less
Unauthorized access attempts:
[GET] /
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 26_0 like Mac OS X) A ...
show moreUnauthorized access attempts:
[GET] /
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 26_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.0 Mobile/15E148 Safari/604.1
show less
[MonJun0106:27:03.0152742026][security2:error][pid2178809:tid2178863][client42.193.171.36:0]ModSecur ...
show more[MonJun0106:27:03.0152742026][security2:error][pid2178809:tid2178863][client42.193.171.36:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.maurokorangraf.ch\"][uri\"/\"][unique_id\"ah0KF3XY90deb6M0D_PYcAAAAE0\"]\,referer:https://m.baidu.com/s\?word=www.ksr4k.cn
show less