๐ฉ๐ช
XICTRON
2026-06-04 11:25:05
(6 days ago)
WordPress attack attempt detected by Fail2Ban
Web App Attack
๐ฆ๐น
Markus Woegerbauer
2026-05-28 21:25:12
(1 week ago)
(wordpress) Failed wordpress login from 65.111.8.59 (US/United States/-)
Brute-Force
๐ซ๐ท
masterguru
2026-04-02 06:36:14
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.8.59 (US/United States/-): 1 in the las ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.8.59 (US/United States/-): 1 in the last 3600 secs (0-193)
show less
Hacking
๐ซ๐ท
masterguru
2026-03-26 15:29:29
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.8.59 (US/United States/-): 1 in the las ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.8.59 (US/United States/-): 1 in the last 3600 secs (0-193)
show less
Hacking
Anonymous
2026-03-21 14:19:25
(2 months ago)
Forum/form spam
Web Spam
Anonymous
2026-03-13 14:13:43
(2 months ago)
Banned by SPAMHAUS ASN-DROP list (ASN: 200373)
DDoS Attack
Hacking
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2026-02-11 17:00:00
(3 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฆ๐บ
oncord
2025-12-23 06:23:13
(5 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-02 22:10:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 17:10:20.161725 2025] [security2:error] [pid 16030:tid 16030] [client 65.111.8.59:53793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tarakanov.com"] [uri "/.git/HEAD"] [unique_id "aS9jzH-SXvLiEjzjt8dKQgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 21:22:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 16:22:21.003684 2025] [security2:error] [pid 30823:tid 30823] [client 65.111.8.59:52959] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "privateshoretours.com"] [uri "/.env"] [unique_id "aS9Yjf6rbSGSlvTGKR8a8gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 07:46:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 02:46:09.052159 2025] [security2:error] [pid 24637:tid 24637] [client 65.111.8.59:57381] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "earlyfordv8crrg10.com"] [uri "/.svn/wc.db"] [unique_id "aS6ZQVW4YL3mMEMB-1XQSwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:49:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:49:25.792865 2025] [security2:error] [pid 20410:tid 20410] [client 65.111.8.59:57191] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kimbrothersusa.com"] [uri "/.svn/wc.db"] [unique_id "aS5v1RpNkIZo9c7rceH6oQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:09:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:09:02.276120 2025] [security2:error] [pid 21250:tid 21250] [client 65.111.8.59:53317] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marshallcurry.com"] [uri "/.env"] [unique_id "aS5mXt2F66CJ0A-4htqZFgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:29:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:29:31.264678 2025] [security2:error] [pid 18255:tid 18255] [client 65.111.8.59:29357] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.flinthillsveterans.org"] [uri "/.git/HEAD"] [unique_id "aSbkm-z2DYQQ1EULlFXpQwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:54:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.8.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:54:00.541306 2025] [security2:error] [pid 16153:tid 16153] [client 65.111.8.59:15449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.momihom.com"] [uri "/.env"] [unique_id "aSaV-E05_iDbP1-tM4nGjgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack