|
π²π½
octageeks.com
|
|
Wordpress malicious attack:[octaflood]
|
Web App Attack
|
|
|
π¬π§
gigatech
|
|
Webserver Probing
|
Web App Attack
|
|
|
π©πͺ
big-cloud.nl
|
|
Try to access /xmlrpc.php
|
Web App Attack
|
|
|
π³π±
GabrielJST
|
|
(wordpress) Failed wordpress login from 65.111.2.74 (US/United States/-)
|
Brute-Force
|
|
|
π²π½
octageeks.com
|
|
Wordpress malicious attack:[octaflood]
|
Web App Attack
|
|
|
π©πͺ
F242
|
|
Wordpress Login or XMLRPC abuse
|
Web App Attack
|
|
|
Anonymous
|
|
Apache probe; attempts=17; exact paths: /xmlrpc.php
|
Web App Attack
|
|
|
π©πͺ
big-cloud.nl
|
|
Try to access /xmlrpc.php
|
Web App Attack
|
|
|
π©πͺ
F242
|
|
Wordpress Login or XMLRPC abuse
|
Web App Attack
|
|
|
πͺπΈ
librebit
|
|
Brute force
|
Brute-Force
|
|
|
π΅π±
sefinek.net
|
|
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
|
Bad Web Bot
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:14:31.209722 2025] [security2:error] [pid 3776772:tid 3776772] [client 65.111.2.74:44519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "birdsofnewcaledonia.com"] [uri "/.svn/wc.db"] [unique_id "aSQh991W2L54tT8MN0IDEgAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:47:16.954846 2025] [security2:error] [pid 10980:tid 10980] [client 65.111.2.74:44071] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.globalsolutions.technology"] [uri "/.env"] [unique_id "aSPxZGSF4NTif0d2hFFozgAAACs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:22:40.718500 2025] [security2:error] [pid 3761:tid 3761] [client 65.111.2.74:59265] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jessmay.com"] [uri "/.svn/wc.db"] [unique_id "aSProH7zvgtBnQDjoRrl2gAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.74 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:46:51.858916 2025] [security2:error] [pid 16445:tid 16445] [client 65.111.2.74:22635] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.talentguard.net"] [uri "/.env"] [unique_id "aSPVK7w6la_6dfjEwSnsFgAAABM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|