πΊπΈ
jkcunningham
2026-07-27 12:24:03
(16 hours ago)
Vulnerability scanner. Pretends referer was target domain, targets os and filesystem, scans for chin ...
show more
Vulnerability scanner. Pretends referer was target domain, targets os and filesystem, scans for chinese acceptance-language.
show less
Bad Web Bot
Port Scan
π©πͺ
Reinhard
2026-07-25 16:55:37
(2 days ago)
Harvesting pictures or malicious BOT.
Bad Web Bot
π¨π¦
1gz
2026-07-25 09:45:02
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: CHALLENGE
Protocol: HTTP/2 (GET met ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: CHALLENGE
Protocol: HTTP/2 (GET method)
Endpoint: /dokumenta/foto/basha-lu.JPG
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-04-30 09:27:13
(2 months ago)
FortiWeb WAF: 2 attacks detected. Threat Score: 7000. Types: Client Management(1), GEO IP(1). Origin ...
show more
FortiWeb WAF: 2 attacks detected. Threat Score: 7000. Types: Client Management(1), GEO IP(1). Origin: Singapore.
show less
Web App Attack
Anonymous
2026-04-26 09:23:21
(3 months ago)
FortiWeb WAF: 66 attacks detected. Threat Score: 9400. Types: Client Management(33), GEO IP(33). Ori ...
show more
FortiWeb WAF: 66 attacks detected. Threat Score: 9400. Types: Client Management(33), GEO IP(33). Origin: Singapore.
show less
Web App Attack
πΊπΈ
kosada.com
2026-04-23 08:27:06
(3 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
π¨π
rt
2026-04-17 22:30:23
(3 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
πΊπΈ
kosada.com
2026-03-31 11:29:11
(3 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
Anonymous
2026-03-26 16:37:02
(4 months ago)
Malicious activity detected
Hacking
Web App Attack
πΊπΈ
kosada.com
2026-03-21 16:30:33
(4 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-12-05 12:45:04
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 45.78.206.212 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.78.206.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 07:44:49.032303 2025] [security2:error] [pid 31731:tid 31731] [client 45.78.206.212:10059] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.verdeprofundo.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.verdeprofundo.net"] [uri "/wp-content/uploads/2014/02/Portada_MFR.jpg"] [unique_id "aTLTwQgJG5DbtZgk6RtyWwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-04 19:12:12
(7 months ago)
Web app attack and vulnerability scan detected from IIS logs
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-04 17:45:25
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 45.78.206.212 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.78.206.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 12:45:16.182835 2025] [security2:error] [pid 20116:tid 20116] [client 45.78.206.212:64307] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.thedesignofcreation.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.thedesignofcreation.com"] [uri "/images/img/Design/Micro101.png"] [unique_id "aTHIrI0oqSZIhdrDSE9_GQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-03 17:11:57
(7 months ago)
Web app attack and vulnerability scan detected from IIS logs
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-30 21:34:24
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 45.78.206.212 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.78.206.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 30 16:34:15.655462 2025] [security2:error] [pid 24057:tid 24057] [client 45.78.206.212:14027] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||manb.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "manb.org"] [uri "/elaltomanb/Documentos/Planes Elaborados/PDLZUR. PROYECTO PDLZUR 2009 2018.pdf"] [unique_id "aSy4V7S7n9sL7CYYBS2gHQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack