๐ซ๐ฎ
as211431.net
2026-01-17 07:52:23
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-01-15 23:02:03
(6 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-01-14.
show less
Hacking
Web App Attack
SSH
๐ฆ๐ฑ
router.al
2026-01-15 15:53:38
(6 months ago)
01/15/2026-15:53:38.465194 151.242.63.73 Protocol: 6 GPL WEB_SERVER 403 Forbidden
Port Scan
๐ฌ๐ง
Aetherweb Ark
2026-01-15 15:47:58
(6 months ago)
(mod_security) mod_security (id:949110) triggered by 151.242.63.73 (US/United States/-): N in the la ...
show more
(mod_security) mod_security (id:949110) triggered by 151.242.63.73 (US/United States/-): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-15 15:18:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 15 10:18:25.813871 2026] [security2:error] [pid 30344:tid 30344] [client 151.242.63.73:40692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "therhclan.com"] [uri "/.git/config"] [unique_id "aWkFQedU8wWP9Fg1dIvHPwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-15 14:35:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 15 09:35:32.764006 2026] [security2:error] [pid 19863:tid 19863] [client 151.242.63.73:56508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "savingshvac.com"] [uri "/.git/config"] [unique_id "aWj7NKsh1Kp_r1oMYj1chAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-15 14:19:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 15 09:19:23.759836 2026] [security2:error] [pid 2298:tid 2298] [client 151.242.63.73:34118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "radtraininginc.com"] [uri "/.git/config"] [unique_id "aWj3a8fYlWuW5oI9TF4jDAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-15 14:01:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 15 09:01:05.660639 2026] [security2:error] [pid 2829:tid 2829] [client 151.242.63.73:48390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plattlawgroup.com"] [uri "/.git/config"] [unique_id "aWjzIU2xMdRSZsU9sXH8hQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-01-14 23:00:30
(6 months ago)
Auto-ban: >3000 req/min op 2026-01-14
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-01-14 19:16:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 14 14:16:33.480073 2026] [security2:error] [pid 30571:tid 30571] [client 151.242.63.73:60824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "7livesahead.com"] [uri "/.git/config"] [unique_id "aWfrkRzySsJ4umg2m015nAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-14 17:39:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 14 12:39:34.957026 2026] [security2:error] [pid 401:tid 401] [client 151.242.63.73:51654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clayrivers.com"] [uri "/.git/config"] [unique_id "aWfU1pQhjzX1Vh6QK7428wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
Renรฉ Hickersberger
2026-01-14 17:24:30
(6 months ago)
[2026-01-14T17:24:30Z] Malicious request to /.git/config
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-14 16:52:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 14 11:52:23.990916 2026] [security2:error] [pid 1095219:tid 1095369] [client 151.242.63.73:49706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafm.us"] [uri "/.git/config"] [unique_id "aWfJx_6P2H2fon7vh1YQMAAAAtg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-14 16:27:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 151.242.63.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 14 11:26:56.888900 2026] [security2:error] [pid 22268:tid 22402] [client 151.242.63.73:48538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barnett-ranch.com"] [uri "/.git/config"] [unique_id "aWfD0NBf5P4utKuQVx9eBAAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-01-09 20:38:21
(6 months ago)
Accessed trap at '/.git/config'
Web App Attack