๐ซ๐ท
mrcrassi
2026-07-22 02:18:13
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
Protocol: HTTP/2 (POST method ...
show more
Triggered Cloudflare WAF (firewallCustom) from FR.
Action taken: BLOCK
Protocol: HTTP/2 (POST method)
Endpoint: /wp-login.php
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.0 Safari/605.1.15
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
ELYAZ
2026-06-14 00:15:03
(1 month ago)
(y4) Failed scan -byebye- from 45.3.47.186 (FR/France/-): (CF_ENABLE)
Hacking
๐บ๐ธ
lostswordfish.com
2026-06-12 22:02:04
(1 month ago)
Wordfence waf block on decarcerationnation
Web App Attack
๐ซ๐ท
pm33
2026-06-11 23:52:22
(1 month ago)
Wordpress login attempts
Brute-Force
Anonymous
2026-05-29 21:56:35
(1 month ago)
[ssd5.kdns.gr] httpd-login-spray-site: sites=popikouloufakou.com; logs=/var/log/httpd/domains/popiko ...
show more
[ssd5.kdns.gr] httpd-login-spray-site: sites=popikouloufakou.com; logs=/var/log/httpd/domains/popikouloufakou.com.log; samples=site_wide=true | distinct_ips=21 | /wp-login.php
show less
Hacking
Web App Attack
Anonymous
2026-05-29 12:19:44
(1 month ago)
Web attack blocked by Wordfence on kernoverlegsibbe-ijzeren.nl (1 hit). Reported by CRMON.
Web App Attack
๐ณ๐ฟ
Antinson
2026-04-09 10:42:11
(3 months ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-02-09 22:59:30
(5 months ago)
Auto-ban: >3000 req/min op 2026-02-09
Hacking
Web App Attack
SSH
Anonymous
2026-02-09 21:56:19
(5 months ago)
45.3.47.186 - - [09/Feb/2026:21:56:03 +0000] "GET /backup/.git/config HTTP/1.1" 302 509 "-" "Mozilla ...
show more
45.3.47.186 - - [09/Feb/2026:21:56:03 +0000] "GET /backup/.git/config HTTP/1.1" 302 509 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 21:40:13
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.47.186 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.47.186 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 16:40:08.169452 2026] [security2:error] [pid 21436:tid 21436] [client 45.3.47.186:45677] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garretthillary.com"] [uri "/wp/.git/config"] [unique_id "aYpUOFpNIpVK-FCFE28zNQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 20:08:35
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.47.186 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.47.186 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 15:08:29.136820 2026] [security2:error] [pid 5640:tid 5640] [client 45.3.47.186:52831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "galengetting.com"] [uri "/config/.env"] [unique_id "aYo-vSeCdsMXdhQgMZcLHgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 09:38:28
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.47.186 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.47.186 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 04:38:20.629024 2026] [security2:error] [pid 32535:tid 32535] [client 45.3.47.186:55789] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fullyevil.com"] [uri "/.env"] [unique_id "aYmrDBxc-x1ZZqJJJakK1AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oncord
2026-01-14 05:39:14
(6 months ago)
Form spam
Web Spam
๐จ๐ญ
backslash
2026-01-07 14:25:11
(6 months ago)
block ruleset 6A1105329D233F6F53B9B61CE056BD4DAAE75AB4
Web Spam
๐ณ๐ฑ
MM-bot
2026-01-02 17:35:09
(6 months ago)
URL-probe: HTTP/1.1 GET request on /wp-login.php (2026-01-02 18:35:09 UTC+1)
Hacking
Web App Attack