Anonymous
2026-06-14 19:43:17
(15 hours ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2026-06-14 09:21:10
(1 day ago)
FortiWeb WAF: 68 attacks detected. Threat Score: 16600. Types: Client Management(34), GEO IP(34). Or ...
show more
FortiWeb WAF: 68 attacks detected. Threat Score: 16600. Types: Client Management(34), GEO IP(34). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 02:31:21
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 22:31:17.506050 2026] [security2:error] [pid 3024:tid 3024] [client 47.79.206.136:38230] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.med-engineering.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.med-engineering.com"] [uri "/progynova.com"] [unique_id "ai4SdbQHZsvV7aaZzGR1NgAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-06-13 17:31:08
(1 day ago)
Web App Attack
Web App Attack
๐บ๐ธ
webgobe
2026-06-13 05:35:37
(2 days ago)
jow-Joomla User : try to access forms...
Hacking
๐จ๐ฆ
1gz
2026-06-13 00:26:59
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (HEAD meth ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (HEAD method)
Endpoint: /author/amiha/page/1626
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
kosada.com
2026-06-12 22:12:16
(2 days ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-12 18:19:10
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 14:19:04.355815 2026] [security2:error] [pid 19935:tid 19957] [client 47.79.206.136:10056] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||barstowstationtoo.com|F|2"] [data ".barstow-station.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "barstowstationtoo.com"] [uri "/www.barstow-station.com"] [unique_id "aixNmHY8hS5Dz4nioStwrwAAAJQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-06-12 17:20:27
(2 days ago)
Web App Attack
Web App Attack
Anonymous
2026-06-12 09:24:48
(3 days ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2026-06-12 09:22:18
(3 days ago)
FortiWeb WAF: 66 attacks detected. Threat Score: 11400. Types: Client Management(33), GEO IP(33). Or ...
show more
FortiWeb WAF: 66 attacks detected. Threat Score: 11400. Types: Client Management(33), GEO IP(33). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 23:22:01
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 19:21:55.515374 2026] [security2:error] [pid 18735:tid 18735] [client 47.79.206.136:5166] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||johnmueller.org|F|2"] [data ".eharlequin.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "johnmueller.org"] [uri "/Problems/www.eHarlequin.com"] [unique_id "aitDExjPUxAU3BJO_64OhgAAAAw"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 21:18:56
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 17:18:51.396042 2026] [security2:error] [pid 17337:tid 17337] [client 47.79.206.136:64610] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.elcalamo.com"] [uri "/pda/turra-desafinada_txt.PDB"] [unique_id "aismO4HFaj_qtdILDVSLGAAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 16:22:48
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 12:22:42.220334 2026] [security2:error] [pid 2323:tid 2323] [client 47.79.206.136:29820] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||printorganic.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "printorganic.com"] [uri "/anywheregarden.com"] [unique_id "airg0vadqQv6AKFHZ8PkAQAAAB4"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 02:07:58
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.206.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 22:07:53.118084 2026] [security2:error] [pid 29588:tid 29588] [client 47.79.206.136:5046] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thinkingepic.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thinkingepic.com"] [uri "/handsfreestand.com"] [unique_id "aioYeRyX5V1CCF3eWMPLZQAAAAU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack