๐ซ๐ท
Sklurk
2026-06-13 00:38:04
(5 hours ago)
Web App Attack
Web App Attack
๐บ๐ธ
kosada.com
2026-06-12 17:08:11
(12 hours ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-12 15:23:52
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 11:23:45.065187 2026] [security2:error] [pid 7075:tid 7075] [client 47.79.207.208:17812] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.asbechiro.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.asbechiro.com"] [uri "/yahoo.com"] [unique_id "aiwkgbL001F68Q_iDkcKcQAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-12 07:10:17
(22 hours ago)
[FriJun1209:10:13.5814832026][security2:error][pid3317741:tid3317885][client47.79.207.208:0]ModSecur ...
show more
[FriJun1209:10:13.5814832026][security2:error][pid3317741:tid3317885][client47.79.207.208:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Stringmatchwithin\".asa/.asax/.ascx/.backup/.bak/.bat/.cdx/.cer/.cfg/.cmd/.com/.config/.conf/.cs/.csproj/.csr/.dat/.db/.dbf/.dll/.dos/.htr/.htw/.ida/.idc/.idq/.inc/.ini/.key/.licx/.lnk/.log/.mdb/.old/.pass/.pdb/.pol/.printer/.pwd/.rdb/.resources/.resx/.sql/.swp/.sys/.vb/.vbs/.vbproj/.vsdisco/.webinfo/.xsx/\"atTX:extension.[file\"/etc/apache2/conf.d/modsec_rules/00_asl_zz_strict.conf\"][line\"91\"][id\"390716\"][rev\"2\"][msg\"Atomicorp.comWAFRules:URLfileextensionisrestrictedbypolicy\"][data\".config\"][severity\"ERROR\"][hostname\"modularss.com\"][uri\"/recordati/virtual/VirtualMolServiceProxy.dll.config\"][unique_id\"aiuw1WSoFPl228fegUO22wAAANA\"]\,referer:https://www.google.com/
show less
Port Scan
Brute-Force
Web App Attack
๐ฆ๐บ
FireGuard Server
2026-06-12 00:05:08
(1 day ago)
Blocked by OPNsense firewall; 4 hits, proto=tcp, ports=443
Port Scan
Hacking
Anonymous
2026-06-11 22:36:01
(1 day ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 11:20:24
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 07:20:18.441648 2026] [security2:error] [pid 10309:tid 10407] [client 47.79.207.208:20368] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thebiglies.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thebiglies.com"] [uri "/ariel95.com"] [unique_id "aiqZ8jNPiq4m0bA6yDeOTQAAAJc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-11 10:13:36
(1 day ago)
Malicious activity
Bad Web Bot
Web App Attack
Anonymous
2026-06-11 09:34:00
(1 day ago)
FortiWeb WAF: 53 attacks detected. Threat Score: 5400. Types: GEO IP(27), Client Management(26). Ori ...
show more
FortiWeb WAF: 53 attacks detected. Threat Score: 5400. Types: GEO IP(27), Client Management(26). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 05:15:27
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 01:15:20.781545 2026] [security2:error] [pid 30199:tid 30199] [client 47.79.207.208:31848] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||soviaenterprises.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "soviaenterprises.com"] [uri "/tylercomputing.com"] [unique_id "aipEaFSC_0A6uLhKL9n-UAAAAA4"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 04:25:16
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 00:25:12.916146 2026] [security2:error] [pid 24470:tid 24470] [client 47.79.207.208:48174] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kevinfranz.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kevinfranz.com"] [uri "/perissosdigitalmarketing.com"] [unique_id "aio4qLS57F7-CmMH91MclAAAAAQ"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
1gz
2026-06-11 01:25:37
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /lajme/chrome-hearts
UA: Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-10 21:15:43
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 47.79.207.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 17:15:39.425456 2026] [security2:error] [pid 16663:tid 16663] [client 47.79.207.208:19834] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.elcalamo.com|F|2"] [data ".pdb"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.elcalamo.com"] [uri "/pda/ya\\xef\\xbf\\xbdez-derendimiento.PDB"] [unique_id "ainT-7OAxinE6ZlrOi8NMwAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2026-06-10 19:00:10
(2 days ago)
GET /grand_final_packages.asp HTTP/1.1
Web App Attack
Anonymous
2026-06-10 17:28:17
(2 days ago)
Malicious activity detected
Hacking
Web App Attack