🇩🇪
NxtGenIT
2026-09-03 11:42:38
(27 minutes ago)
CiscoASA Honeypot hit, Payload: "GET /+CSCOE+/logon.html?fcadbadd=1 HTTP/1.1" 200 -,
Brute-Force
🇳🇱
thedreamer.nl
2026-08-20 01:23:52
(2 weeks ago)
45.3.36.130 - - [20/Aug/2026:03:22:37 +0200] "GET /.git/objects/ab/43e5e26c4281a78f7554f061ac23d3902 ...
show more
45.3.36.130 - - [20/Aug/2026:03:22:37 +0200] "GET /.git/objects/ab/43e5e26c4281a78f7554f061ac23d390289735 HTTP/1.1" 200 1117 "-" "git/2.40.0" "US" "Ashburn" "39.04690" "-77.49030"
45.3.36.130 - - [20/Aug/2026:03:22:37 +0200] "GET /.git/objects/58/59bc41c1f0dd170114de770c5e8485b5cb00a1 HTTP/1.1" 200 1728 "-" "git/2.40.0" "US" "Ashburn" "39.04690" "-77.49030"
45.3.36.130 - - [20/Aug/2026:03:22:37 +0200] "GET /.git/objects/01/cc32a0cc92d8b76ac2d181f974d1f8e1f95a1d HTTP/1.1" 200 214 "-" "git/2.40.0" "US" "Ashburn" "39.04690" "-77.49030"
45.3.36.130 - - [20/Aug/2026:03:22:37 +0200] "GET /.git/objects/ab/6332dcebf7b0c3d95058100be13d941ea220ee HTTP/1.1" 200 8271 "-" "git/2.40.0" "US" "Ashburn" "39.04690" "-77.49030"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
🇱🇻
garmtech.com
2026-08-13 08:03:05
(3 weeks ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-03.45.3.36.130.web-spammers ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-03.45.3.36.130.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
🇪🇨
icp77
2026-07-29 14:06:00
(1 month ago)
Abuse DDoS
DDoS Attack
Port Scan
Brute-Force
Exploited Host
Web App Attack
SSH
FTP Brute-Force
Hacking
SQL Injection
🇫🇮
inlink.ltd
2026-05-26 08:41:24
(3 months ago)
Known malicious PHP file or CMS probe
Web App Attack
Anonymous
2026-05-05 06:32:45
(3 months ago)
Forum/form spam
Web Spam
🇬🇧
relianoid.com
2026-03-04 03:15:45
(5 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
🇫🇷
mrcrassi
2026-02-12 21:56:38
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST meth ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /wp-login.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
🇫🇷
Little Iguana
2026-01-31 13:06:40
(7 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
🇺🇸
TPI-Abuse
2026-01-21 14:08:18
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.130 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 09:08:11.174388 2026] [security2:error] [pid 13028:tid 13028] [client 45.3.36.130:19347] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trafficstopper.com"] [uri "/.svn/wc.db"] [unique_id "aXDdy6C6suXuiry6mPGg9AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-01-21 13:44:14
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.130 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 08:44:09.057788 2026] [security2:error] [pid 16067:tid 16188] [client 45.3.36.130:11981] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jawa-lb.org"] [uri "/.svn/wc.db"] [unique_id "aXDYKeyweakNZlfO6-NPywAAAhM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-01-20 21:56:04
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.130 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 16:55:56.091261 2026] [security2:error] [pid 1859795:tid 1859795] [client 45.3.36.130:59231] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohwaitiforgot.com"] [uri "/.env"] [unique_id "aW_57JV1QmyTtmkWcFKxDAAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Little Iguana
2026-01-20 20:25:03
(7 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
🇨🇭
backslash
2025-12-10 06:25:03
(8 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
Anonymous
2025-12-09 13:36:34
(8 months ago)
botnet
DDoS Attack