๐บ๐ธ
TPI-Abuse
2025-09-13 22:28:20
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 45.204.212.213 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 45.204.212.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 13 18:28:15.502249 2025] [security2:error] [pid 20668:tid 20668] [client 45.204.212.213:38456] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||qualityelevatorcabs.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "qualityelevatorcabs.com"] [uri "/[email protected] "] [unique_id "aMXv_49NYkZGzx04yXN4kwAAAAw"], referer: http://qualityelevatorcabs.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
island-freaks.com
2025-09-12 14:08:52
(9 months ago)
Attack Type: WordPress Exploit Bot attempt on /photo/113997/ | DNS 45.204.212.213 | Agent: Mozilla/5 ...
show more
Attack Type: WordPress Exploit Bot attempt on /photo/113997/ | DNS 45.204.212.213 | Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 12.5; rv:114.0) Gecko/20100101 Firefox/114.0
show less
Port Scan
Hacking
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
COMPLEX
2025-09-11 23:02:32
(9 months ago)
SSH brute force attack detected by fail2ban - attempted unauthorized access
Brute-Force
SSH
Anonymous
2025-09-11 08:32:35
(9 months ago)
45.204.212.213 - - [11/Sep/2025:08:32:23 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 10973 "htt ...
show more
45.204.212.213 - - [11/Sep/2025:08:32:23 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 10973 "https://en.transformal.com/wiki/Special:Contact" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51"
45.204.212.213 - - [11/Sep/2025:08:32:34 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 11373 "https://en.transformal.com/wiki/Special:Contact" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51"
...
show less
Web Spam
Web App Attack
Anonymous
2025-09-11 06:02:45
(9 months ago)
45.204.212.213 - - [11/Sep/2025:05:49:06 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 11068 "htt ...
show more
45.204.212.213 - - [11/Sep/2025:05:49:06 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 11068 "https://en.transformal.com/wiki/Special:Contact" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51"
45.204.212.213 - - [11/Sep/2025:06:02:45 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 10657 "https://en.transformal.com/wiki/Special:Contact" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51"
...
show less
Web Spam
Web App Attack
Anonymous
2025-09-10 17:34:05
(9 months ago)
Kept connecting and disconnecting without issuing any commands
DDoS Attack
๐น๐ท
rtbh.com.tr
2025-09-09 20:08:43
(9 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐ต๐ฑ
sefinek.net
2025-09-09 10:35:11
(9 months ago)
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐น๐ท
rtbh.com.tr
2025-09-08 20:08:41
(9 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐ฏ๐ต
Netgnome
2025-09-07 16:52:06
(9 months ago)
SMTP/25 Attempts send from non-existent domain(SNDRIP=ERDNS)
Brute-Force
Anonymous
2025-09-07 03:41:59
(9 months ago)
45.204.212.213 - - [07/Sep/2025:03:40:42 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 11402 "htt ...
show more
45.204.212.213 - - [07/Sep/2025:03:40:42 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 11402 "https://en.transformal.com/wiki/Special:Contact" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15"
45.204.212.213 - - [07/Sep/2025:03:41:23 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 11425 "https://en.transformal.com/wiki/Special:Contact" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15"
45.204.212.213 - - [07/Sep/2025:03:41:58 +0000] "POST /wiki/Special:Contact HTTP/1.1" 200 10880 "https://en.transformal.com/wiki/Special:Contact" "Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.4 Safari/605.1.15"
...
show less
Web Spam
Web App Attack
๐น๐ท
rtbh.com.tr
2025-09-05 20:08:37
(9 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2025-09-05 00:08:37
(9 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2025-09-04 20:08:37
(9 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
Anonymous
2025-09-02 16:30:25
(9 months ago)
Failed login attempt detected by Fail2Ban in plesk-postfix jail
Brute-Force