Anonymous
2025-11-04 11:27:29
(7 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-11-01 16:07:30
(7 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-06-07 00:18:30
(1 year ago)
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
๐ต๐ฑ
sefinek.net
2025-02-17 11:30:20
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
ASN: 12993 (DEAC- ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
ASN: 12993 (DEAC-AS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
Timestamp: 2025-02-17T10:09:18Z
Ray ID: 9134fb2a9ca3974d
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 OPR/89.0.4447.51
Report generated by Cloudflare-WAF-To-AbuseIPDB:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฒ๐พ
Rizzy
2025-02-17 01:28:02
(1 year ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ต๐ฑ
sefinek.net
2025-02-07 13:41:14
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
ASN: 12993 (DEAC- ...
show more
Triggered Cloudflare WAF (firewallCustom) from GB.
Action taken: MANAGED_CHALLENGE
ASN: 12993 (DEAC-AS)
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
Timestamp: 2025-02-07T13:39:58Z
Ray ID: 90e3ca011eaae4d7
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Xbox; Xbox One) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36 Edge/44.18363.8131
Report generated by Cloudflare-WAF-To-AbuseIPDB:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-02-05 06:29:55
(1 year ago)
(mod_security) mod_security (id:210831) triggered by 77.83.1.95 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210831) triggered by 77.83.1.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 05 01:29:50.531875 2025] [security2:error] [pid 2477405:tid 2477405] [client 77.83.1.95:32899] [client 77.83.1.95] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||backstore.com|F|4"] [data "a href="] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "backstore.com"] [uri "/webalizer/usage_201711.html"] [unique_id "Z6MFXmBXZJvMhgvl7LQjBQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-01-24 04:57:23
(1 year ago)
XMLRPC Hack Attempts
Hacking
Brute-Force
Anonymous
2025-01-24 03:25:28
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฌ๐ง
Steve
2024-03-20 01:20:34
(2 years ago)
Registration form abuse
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-16 05:38:50
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 77.83.1.95 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 77.83.1.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 16 00:38:42.574646 2023] [security2:error] [pid 28500] [client 77.83.1.95:24209] [client 77.83.1.95] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cnprcertificationreviews.org|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cnprcertificationreviews.org"] [uri "/facebook.com"] [unique_id "ZVWq4k6oKfai1eCYBq68AgAAABc"], referer: https://cnprcertificationreviews.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2023-11-13 05:14:31
(2 years ago)
Wordpress malicious attack:[octa404]
Web App Attack
๐ฆ๐บ
oncord
2023-09-17 11:28:23
(2 years ago)
Form spam
Web Spam
๐ป๐ณ
Xuan Can
2023-06-23 17:35:18
(2 years ago)
(mod_security) mod_security (id:6) triggered by 77.83.1.95 (GB/United Kingdom/-): 1 in the last 3600 ...
show more
(mod_security) mod_security (id:6) triggered by 77.83.1.95 (GB/United Kingdom/-): 1 in the last 3600 secs; Ports: 80,443; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 24 00:35:12.494308 2023] [security2:error] [pid 32461:tid 47680669656832] [client 77.83.1.95:12047] [client 77.83.1.95] ModSecurity: Access denied with connection close (phase 2). Pattern match "wp-login.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "63"] [id "6"] [severity "CRITICAL"] [hostname "kb.pavietnam.vn"] [uri "/wp-login.php"] [unique_id "ZJXX0Ga_PXOnLJXxBv66hwAAAQw"], referer: https://kb.pavietnam.vn/
show less
Brute-Force
SSH
๐ซ๐ท
Security_Whaller
2023-06-19 08:09:00
(2 years ago)
Malicious Activity, account creation for scam about NFT
Web Spam
Exploited Host