π©πͺ
Packets-Decreaser.NET
2025-12-29 14:01:56
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
π§πͺ
madeit
2025-11-30 04:35:49
(6 months ago)
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 03:37:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:36:58.855005 2025] [security2:error] [pid 12147:tid 12147] [client 65.111.22.243:42979] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.baileylabovitz.com"] [uri "/.git/HEAD"] [unique_id "aSUkWmXlLH2lDGf433iNfwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 03:15:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:15:32.099309 2025] [security2:error] [pid 5568:tid 5568] [client 65.111.22.243:30903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.uncle-david.com"] [uri "/.env"] [unique_id "aSUfVDqWi-94lU4g8_7McwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 02:53:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:53:29.987512 2025] [security2:error] [pid 17465:tid 17465] [client 65.111.22.243:56409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jcrluthier.com"] [uri "/.env"] [unique_id "aSUaKU0mQca-xeqkI7fgZAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 00:48:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:48:28.497988 2025] [security2:error] [pid 9325:tid 9325] [client 65.111.22.243:36673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.biff0.com"] [uri "/.env"] [unique_id "aST83Oib29wCoiYK3a62mgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 07:20:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:20:49.718041 2025] [security2:error] [pid 3477:tid 3477] [client 65.111.22.243:17793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.infalliblebible.com"] [uri "/.env"] [unique_id "aSQHUca8ug1FYSgyPIPLUQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 07:03:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:03:36.800359 2025] [security2:error] [pid 12005:tid 12038] [client 65.111.22.243:32917] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lakebridge.com"] [uri "/.svn/wc.db"] [unique_id "aSQDSDBPFl6aUrWWAmcq4gAAAUA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 06:16:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:16:13.176394 2025] [security2:error] [pid 25103:tid 25103] [client 65.111.22.243:59801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.albrittonmcclain.com"] [uri "/.svn/wc.db"] [unique_id "aSP4LfWHR072WJtdRU7a2QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 04:51:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:51:03.560457 2025] [security2:error] [pid 14843:tid 14865] [client 65.111.22.243:17615] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.dba.center"] [uri "/.git/HEAD"] [unique_id "aSPkN10D_Mes39tIl2r50gAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 04:31:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:31:18.986258 2025] [security2:error] [pid 9322:tid 9322] [client 65.111.22.243:41593] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.asfmglobal.com"] [uri "/.svn/wc.db"] [unique_id "aSPfltSysnvyKXd_vJ_CKgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
sefinek.net
2025-10-13 12:31:42
(7 months ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 12_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2025-02-24 11:30:09
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 65.111.22.243 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 24 06:30:03.400438 2025] [security2:error] [pid 6016:tid 6016] [client 65.111.22.243:37987] [client 65.111.22.243] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theholleys.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theholleys.net"] [uri "/wp-json/wp/v2/users"] [unique_id "Z7xYO261LOxlVYsupAF6HQAAAAA"], referer: https://theholleys.net
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-01-23 15:29:38
(1 year ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.01.23 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.01.23 is noted in report timestamp
show less
Hacking
Brute-Force
πΈπͺ
OnTheEdge
2024-12-22 08:57:28
(1 year ago)
Password spraying
Hacking
Web App Attack