Anonymous
2026-06-15 11:22:33
(5 hours ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2026-06-15 09:23:52
(7 hours ago)
FortiWeb WAF: 54 attacks detected. Threat Score: 15600. Types: Client Management(27), GEO IP(27). Or ...
show more
FortiWeb WAF: 54 attacks detected. Threat Score: 15600. Types: Client Management(27), GEO IP(27). Origin: Singapore.
show less
Web App Attack
๐ซ๐ท
Sklurk
2026-06-15 02:12:29
(14 hours ago)
Web App Attack
Web App Attack
๐บ๐ธ
kosada.com
2026-06-15 01:18:55
(15 hours ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฉ๐ช
4server
2026-06-14 22:17:36
(18 hours ago)
[MonJun1500:17:30.3026782026][security2:error][pid3338868:tid3338889][client47.79.200.141:0]ModSecur ...
show more
[MonJun1500:17:30.3026782026][security2:error][pid3338868:tid3338889][client47.79.200.141:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Stringmatchwithin\".asa/.asax/.ascx/.backup/.bak/.bat/.cdx/.cer/.cfg/.cmd/.com/.config/.conf/.cs/.csproj/.csr/.dat/.db/.dbf/.dll/.dos/.htr/.htw/.ida/.idc/.idq/.inc/.ini/.key/.licx/.lnk/.log/.mdb/.old/.pass/.pdb/.pol/.printer/.pwd/.rdb/.resources/.resx/.sql/.swp/.sys/.vb/.vbs/.vbproj/.vsdisco/.webinfo/.xsx/\"atTX:extension.[file\"/etc/apache2/conf.d/modsec_rules/00_asl_zz_strict.conf\"][line\"91\"][id\"390716\"][rev\"2\"][msg\"Atomicorp.comWAFRules:URLfileextensionisrestrictedbypolicy\"][data\".pdb\"][severity\"ERROR\"][hostname\"modularss.com\"][uri\"/recordati/authupdate/AuthenticatorService.pdb\"][unique_id\"ai8oep3wLQBVKk8VEJlFugAAARE\"]\,referer:https://www.google.com/
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 06:03:47
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 02:03:40.642758 2026] [security2:error] [pid 6936:tid 6936] [client 47.79.200.141:27554] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.williamfitzsimmons.com|F|2"] [data ".thesoutherncville.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.williamfitzsimmons.com"] [uri "/www.thesoutherncville.com"] [unique_id "ai5EPHwGRfkOrCeEJ5r37AAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-06-14 02:28:38
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/1-ore-ne-dite
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
Sklurk
2026-06-13 20:31:57
(1 day ago)
Web App Attack
Web App Attack
Anonymous
2026-06-13 09:27:04
(2 days ago)
FortiWeb WAF: 44 attacks detected. Threat Score: 14600. Types: Client Management(22), GEO IP(22). Or ...
show more
FortiWeb WAF: 44 attacks detected. Threat Score: 14600. Types: Client Management(22), GEO IP(22). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 06:14:40
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:14:34.863844 2026] [security2:error] [pid 11217:tid 11217] [client 47.79.200.141:36632] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.aaattanasio.com|F|2"] [data ".aaattanasio.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.aaattanasio.com"] [uri "/book/arc-of-the-dream-a-radix-tetrad-novel/www.aaattanasio.com"] [unique_id "aiz1SpXdndEinohHoe_Y1AAAAFE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-06-12 18:18:22
(2 days ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 08:05:05
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 04:04:57.270333 2026] [security2:error] [pid 24278:tid 24278] [client 47.79.200.141:64496] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.3905ccn.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.3905ccn.org"] [uri "/\\\\\\\\quickqsl.com"] [unique_id "aiu9qeydMdQbB2hk-66QPAAAAAM"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-11 21:35:02
(3 days ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2026-06-11 09:34:24
(4 days ago)
FortiWeb WAF: 53 attacks detected. Threat Score: 5400. Types: GEO IP(27), Client Management(26). Ori ...
show more
FortiWeb WAF: 53 attacks detected. Threat Score: 5400. Types: GEO IP(27), Client Management(26). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 21:03:00
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.200.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 17:02:53.421478 2026] [security2:error] [pid 12034:tid 12034] [client 47.79.200.141:41430] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.beirutbazar.com|F|2"] [data ".beirutbazar.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.beirutbazar.com"] [uri "/nstores/the-yarn-couch/www.beirutbazar.com"] [unique_id "ainQ_dhmj8XBrcRjjEauXAAAABI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack