๐ซ๐ท
Sklurk
2026-07-29 00:27:27
(3 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-25 11:59:12
(4 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ฎ
as211431.net
2026-07-09 18:39:49
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /index.php
UA: Mozilla/5.0 (X11; Linux x86_64; rv:147.0) Gecko/20100101 Firefox/147.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
Sklurk
2026-06-20 03:03:57
(2 months ago)
Web App Attack
Web App Attack
๐ซ๐ฎ
as211431.net
2026-05-26 05:52:08
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /index.php
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.2 Safari/605.1.15
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ญ
backslash
2026-05-23 05:06:10
(3 months ago)
Bad Web Bot
๐ฑ๐ป
garmtech.com
2026-04-02 06:35:01
(4 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-29 14:28:04
(4 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
๐ซ๐ท
masterguru
2026-03-27 11:10:45
(4 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.12.153 (US/United States/-): 1 in the l ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.12.153 (US/United States/-): 1 in the last 3600 secs (0-193)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-13 12:47:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 07:47:38.992482 2026] [security2:error] [pid 820:tid 820] [client 65.111.12.153:49893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "midcityrotary.org"] [uri "/backend/.env"] [unique_id "aY8davnR5GLxYLkoA9AxLgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 08:22:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 03:22:03.460513 2026] [security2:error] [pid 22310:tid 22310] [client 65.111.12.153:30915] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "meomy.us"] [uri "/.env.save"] [unique_id "aY7fKz2SdWWEOt9AGcaepQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 07:11:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 02:11:26.010213 2026] [security2:error] [pid 9855:tid 9855] [client 65.111.12.153:59547] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medpact.net"] [uri "/app/.env"] [unique_id "aY7OnvyUTn0JM3V0BHzgJwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-02-13 05:52:26
(6 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 03:23:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.12.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 22:23:27.462747 2026] [security2:error] [pid 12571:tid 12571] [client 65.111.12.153:58717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mardensmith.com"] [uri "/.env.local"] [unique_id "aY6ZL4Yx0ElA-69Nk3k7swAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-02-13 02:30:02
(6 months ago)
Web App Attack