๐บ๐ฆ
URAN Publishing Service
2026-08-24 17:03:22
(13 hours ago)
[24/Aug/2026:20:03:21 +0300] -- 85.203.44.42 Ban reason: User-Agent Go-http-client
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-07-17 09:55:03
(1 month ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ญ๐บ
bcsaba
2026-07-07 21:33:53
(1 month ago)
Suricata: Alert - ET INFO Go-http-client User-Agent Observed Inbound
Web App Attack
๐ซ๐ฎ
YF
2026-06-09 10:00:57
(2 months ago)
Attaque distribuรฉe subnet
DDoS Attack
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-06-09 08:32:25
(2 months ago)
85.203.44.42 - - [09/Jun/2026:11:32:24 +0300] "GET /wp-includes/js/index.php HTTP/1.1" 404 706 "-" " ...
show more
85.203.44.42 - - [09/Jun/2026:11:32:24 +0300] "GET /wp-includes/js/index.php HTTP/1.1" 404 706 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 OPR/70.0.3728.95"
85.203.44.42 - - [09/Jun/2026:11:32:24 +0300] "GET /wp-content/upgrade/item.php HTTP/1.1" 404 706 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36"
...
show less
Web App Attack
๐ณ๐ฑ
ParaBug
2026-06-03 09:53:12
(2 months ago)
85.203.44.42 - - [03/Jun/2026:11:53:12 +0200] "GET /wp-login.php HTTP/1.1" 301 2926 "-" "Mozilla/5.0 ...
show more
85.203.44.42 - - [03/Jun/2026:11:53:12 +0200] "GET /wp-login.php HTTP/1.1" 301 2926 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 Vivaldi/6.7"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-05-18 17:46:49
(3 months ago)
85.203.44.42 - - [18/May/2026:20:46:46 +0300] "GET //administrator/index.php HTTP/1.1" 404 706 "-" " ...
show more
85.203.44.42 - - [18/May/2026:20:46:46 +0300] "GET //administrator/index.php HTTP/1.1" 404 706 "-" "Go-http-client/1.1"
85.203.44.42 - - [18/May/2026:20:46:48 +0300] "GET //wp-content/plugins/age-restriction/modules/remote_support/remote_init.php HTTP/1.1" 404 706 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐ซ๐ท
masterguru
2026-04-20 17:38:40
(4 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-193)
show less
Bad Web Bot
๐บ๐ธ
mnsf
2026-01-30 17:05:37
(6 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-22 12:37:43
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 85.203.44.42 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 85.203.44.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 07:37:37.976936 2026] [security2:error] [pid 11249:tid 11249] [client 85.203.44.42:50657] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||headcount.dev|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "headcount.dev"] [uri "/old/backup.sql"] [unique_id "aXIaEdLBpI2RsSpEUUGHKQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-01-22 07:05:33
(7 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-23 20:33:29
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 85.203.44.42 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 85.203.44.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 23 15:33:23.724063 2025] [security2:error] [pid 14226:tid 14226] [client 85.203.44.42:45005] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||qualityelevatorcabs.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "qualityelevatorcabs.com"] [uri "/backups/dump.sql"] [unique_id "aUr8kz8TYmhcQRVr_wNtiQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2025-12-20 20:28:39
(8 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐ฌ๐ง
pinguin
2025-12-01 10:08:08
(8 months ago)
Triggered Cloudflare WAF (firewallManaged) from SE.
Action taken: LOG
Protocol: HTTP/2 (HEAD method) ...
show more
Triggered Cloudflare WAF (firewallManaged) from SE.
Action taken: LOG
Protocol: HTTP/2 (HEAD method)
Endpoint: /backup/backup.tar
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-19 17:05:59
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 85.203.44.42 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 85.203.44.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 19 12:05:55.060763 2025] [security2:error] [pid 16957:tid 16957] [client 85.203.44.42:45509] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||loriatrading.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "loriatrading.com"] [uri "/bak/dump.sql"] [unique_id "aR348zCGF6c0FSv14r3oZAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack