🇺🇸
xmission.com
2026-08-03 12:39:18
(3 weeks ago)
Blocked by UFW (TCP on 59558)
Source port: 64754
TTL: 107
Packet length: 52
TOS: 0x08
This report ( ...
show more
Blocked by UFW (TCP on 59558)
Source port: 64754
TTL: 107
Packet length: 52
TOS: 0x08
This report (for 149.102.240.88) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
🇭🇺
bcsaba
2026-07-30 12:48:17
(1 month ago)
Probing for .git:
149.102.240.88 - - [30/Jul/2026:14:48:12 +0200] "GET /.git/index HTTP/2.0" 403 146 ...
show more
Probing for .git:
149.102.240.88 - - [30/Jul/2026:14:48:12 +0200] "GET /.git/index HTTP/2.0" 403 146 "-" "moving-to-bins/1.0"
show less
Web App Attack
🇧🇪
cmbplf
2026-07-30 11:40:23
(1 month ago)
203 requests with url.path *.git/*
Brute-Force
Bad Web Bot
🇩🇪
juutis
2026-07-30 10:29:19
(1 month ago)
Multiple WAF abuses - IP blocked
Hacking
Brute-Force
Web App Attack
🇬🇧
abivia
2026-07-30 10:14:27
(1 month ago)
Abivia WAF trigger: Rule scriptKiddies: Dot file access. uri: /.git/index
Hacking
🇺🇸
jsjdmediallc
2026-07-29 13:20:05
(1 month ago)
Auto-blocked: score 19 (threshold 10). Tier: HIGH. Hits: 3. Flags: git-exposure. Paths: /.git/index, ...
show more
Auto-blocked: score 19 (threshold 10). Tier: HIGH. Hits: 3. Flags: git-exposure. Paths: /.git/index, /.git/index, /.git/index
show less
Bad Web Bot
Web App Attack
🇬🇧
Smish
2026-07-29 12:53:34
(1 month ago)
HONEYPOT HIT --> Fail2ban time=1785329612 log=2026-07-29T13:53:32+01:00 ip=149.102.240.88 host=as210 ...
show more
HONEYPOT HIT --> Fail2ban time=1785329612 log=2026-07-29T13:53:32+01:00 ip=149.102.240.88 host=as210667.net method=GET uri="/.git/index" status=404 ua="moving-to-bins/1.0" ref="-" rid=297ca2309460fed054f85aa0c774f91a
show less
Web App Attack
🇺🇸
Major Hostility
2026-07-29 12:37:17
(1 month ago)
"GET /.git/index HTTP/1.1" 404
"GET /.git/index HTTP/1.1" 404
Web App Attack
🇺🇸
TPI-Abuse
2026-07-29 12:32:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 149.102.240.88 (unn-149-102-240-88.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 149.102.240.88 (unn-149-102-240-88.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 08:32:13.644296 2026] [security2:error] [pid 3427024:tid 3427091] [client 149.102.240.88:51968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arrowsinthequiver.com"] [uri "/.git/index"] [unique_id "amnyzSkLYevUI_FoB2EQ4AAAAQc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-29 12:10:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 149.102.240.88 (unn-149-102-240-88.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 149.102.240.88 (unn-149-102-240-88.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 08:10:17.203255 2026] [security2:error] [pid 629695:tid 629695] [client 149.102.240.88:36714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "architech.com"] [uri "/.git/index"] [unique_id "amntqV7COns3u2t9VOeDCwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-29 12:05:01
(1 month ago)
suspicious request in access.log
Web App Attack
🇬🇧
consul.to
2026-07-29 11:42:23
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
🇩🇪
Ba-Yu
2026-07-29 11:27:39
(1 month ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-07-29 11:14:38
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 149.102.240.88 (unn-149-102-240-88.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 149.102.240.88 (unn-149-102-240-88.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 07:14:33.480039 2026] [security2:error] [pid 3616906:tid 3616906] [client 149.102.240.88:45402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ankitoner.com"] [uri "/.git/index"] [unique_id "amngmcBoFYhwWbTNnM38tAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
as211431.net
2026-07-29 10:56:33
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from UA.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from UA.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/index
UA: moving-to-bins/1.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot