๐ฉ๐ช
Goetz
2026-09-18 10:17:37
(9 hours ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
๐จ๐ญ
backslash
2026-09-17 00:18:02
(1 day ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
lostswordfish.com
2026-09-14 16:38:03
(4 days ago)
Wordfence waf block on parsol
Web App Attack
Anonymous
2026-09-03 21:09:43
(2 weeks ago)
2026-09-03T23:09:43.062120+02:00 polaris wp(bikeschool.co.za)[848423]: Blocked user enumeration atte ...
show more
2026-09-03T23:09:43.062120+02:00 polaris wp(bikeschool.co.za)[848423]: Blocked user enumeration attempt from 45.3.47.113
...
show less
Brute-Force
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-03 16:09:29
(2 weeks ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ซ๐ท
Sklurk
2026-08-17 04:24:47
(1 month ago)
Web App Attack
Web App Attack
๐ต๐ฑ
sefinek.net
2025-12-14 05:21:53
(9 months ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (X11; Fedora; Linux x86_64; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ธ๐ช
Johan Finn
2025-12-05 03:04:50
(9 months ago)
malicious activity
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 02:31:49
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 21:31:44.757114 2025] [security2:error] [pid 18236:tid 18236] [client 45.3.47.113:22231] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.swim6.com"] [uri "/.git/HEAD"] [unique_id "aSZmkAz1Qdyqwkan7hJAWAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:43:12
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:42:58.493932 2025] [security2:error] [pid 21512:tid 21512] [client 45.3.47.113:31673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.givemethemic.com"] [uri "/.git/HEAD"] [unique_id "aSZNEhNMQobkhuV0jPFMkAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:35:30
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:35:20.679011 2025] [security2:error] [pid 31090:tid 31090] [client 45.3.47.113:47417] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.lfrmtmorris.com"] [uri "/.env"] [unique_id "aSQm2Eh2ZkyYUxhc0HUxZAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2025-11-22 08:08:15
(9 months ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 YaBrowser/22.7.0 Yowser/2.5 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-13 05:54:50
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 00:54:42.960934 2025] [security2:error] [pid 3151:tid 3151] [client 45.3.47.113:56281] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bdalzell.batw.net|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bdalzell.batw.net"] [uri "/s3cmd.ini"] [unique_id "aRVyopMo7slTzmmuoNCbigAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-10 13:12:30
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.3.47.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 10 08:12:27.251935 2025] [security2:error] [pid 11084:tid 11129] [client 45.3.47.113:54439] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.zoomtexas.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.zoomtexas.com"] [uri "/s3cmd.ini"] [unique_id "aRHku2lNaT9GCubGpur2MwAAAU0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Might Man
2025-03-30 07:49:00
(1 year ago)
h
Hacking
Exploited Host
Web App Attack