π΅π±
sefinek.net
2026-02-21 10:43:38
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | Protocol: HTTP/1.1 (GET) | Endpoint: /genshin-stella-mod | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Xbox; Xbox One) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Edge/44.18363.8131 β’ Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-02-09 21:49:08
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 16:48:59.780871 2026] [security2:error] [pid 13388:tid 13388] [client 45.3.36.134:51935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garyrankin.com"] [uri "/app/.git/config"] [unique_id "aYpWS5dpvMHiMxJjFqsY7QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-09 17:59:22
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:59:18.963162 2026] [security2:error] [pid 22206:tid 22206] [client 45.3.36.134:15973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "furballaudio.com"] [uri "/backup/.git/config"] [unique_id "aYogdhq_CFc1lTX12oPuxwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
F242
2026-01-30 05:19:02
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
πͺπΈ
10dencehispahard SL
2026-01-26 11:23:24
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
π±π»
garmtech.com
2026-01-23 11:54:57
(4 months ago)
IM360 WAF: Attempt to upload malware
Hacking
π±π»
garmtech.com
2026-01-18 10:23:12
(4 months ago)
IM360 WAF: Attempt to upload malware
Hacking
π¬π§
relianoid.com
2025-12-22 13:36:24
(5 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
Anonymous
2025-12-02 10:37:33
(6 months ago)
botnet
DDoS Attack
π΅π±
sefinek.net
2025-11-30 13:51:16
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Vivaldi/5.3.2679.68
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2025-11-28 16:14:21
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.28 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.28 is noted in report timestamp
show less
Hacking
Brute-Force
πΊπΈ
TPI-Abuse
2025-11-25 04:54:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:54:07.814146 2025] [security2:error] [pid 16719:tid 16719] [client 45.3.36.134:48903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.papelandia.com.ve"] [uri "/.env"] [unique_id "aSU2bwdCedS6qQJShXfB6AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 04:16:00
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:15:54.416104 2025] [security2:error] [pid 780217:tid 780217] [client 45.3.36.134:16319] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.copiersgreensboro.com"] [uri "/.svn/wc.db"] [unique_id "aSUteiIGdoTx_03Jrs-joQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 02:45:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:45:05.550698 2025] [security2:error] [pid 26629:tid 26629] [client 45.3.36.134:59025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.tulsatvmemories.com"] [uri "/.env"] [unique_id "aSUYMQDYTu5LbZWedACa0gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 00:58:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.36.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:58:11.477301 2025] [security2:error] [pid 30480:tid 30480] [client 45.3.36.134:26707] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "okeetokee.okeetokee.org"] [uri "/.git/HEAD"] [unique_id "aST_I-0wWRxj5mBW0gC6swAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack