🇺🇸
TPI-Abuse
2026-09-14 00:58:49
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.co ...
show more
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 20:58:41.215856 2026] [security2:error] [pid 6047:tid 6047] [client 192.3.33.208:42749] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.james.ahlstrom.name"] [uri "/.git/HEAD"] [unique_id "aqdGwZtB2o1TAvmQWijeiAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 00:08:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.co ...
show more
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 20:08:35.868155 2026] [security2:error] [pid 5452:tid 5452] [client 192.3.33.208:42250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.casapapayasanmiguel.com"] [uri "/.git/HEAD"] [unique_id "aqXpg1w6U29o7DghkH2DYwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-12 23:10:25
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 22:07:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.co ...
show more
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 18:07:44.043510 2026] [security2:error] [pid 22449:tid 22449] [client 192.3.33.208:39565] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.accordionclub.org"] [uri "/.git/HEAD"] [unique_id "aqXNMAO5b3MFO7vzQVmrjwAAAFk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 20:54:39
(2 days ago)
[da.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/.git/HEAD
Hacking
Web App Attack
🇬🇧
pinguin
2026-09-09 21:42:24
(4 days ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/HEAD
UA: Python-urllib/3.10
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-09 21:19:24
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.co ...
show more
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 17:19:17.738874 2026] [security2:error] [pid 8958:tid 8958] [client 192.3.33.208:55775] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.headcount.dev"] [uri "/.git/HEAD"] [unique_id "aqHNVeOhZOxxUoqkiGOLDgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 16:52:42
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.co ...
show more
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 12:52:36.203697 2026] [security2:error] [pid 27162:tid 27162] [client 192.3.33.208:56384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ubermilo.com.bwill.dev"] [uri "/.git/HEAD"] [unique_id "aqGO1BYHFMg5PTtJ_DGhxQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 02:18:04
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.co ...
show more
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 22:17:39.137983 2026] [security2:error] [pid 15205:tid 15205] [client 192.3.33.208:43974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "playerpianorestorations.player-care.com"] [uri "/.git/HEAD"] [unique_id "aqDBw2UN3okd9E_TynPr4AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
sefinek.net
2026-09-08 10:30:16
(6 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.git/HEAD | UA: Python-urllib/3.10 • Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-04 19:48:41
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.co ...
show more
(mod_security) mod_security (id:210492) triggered by 192.3.33.208 (192-3-33-208-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:46:56.355442 2026] [security2:error] [pid 14117:tid 14137] [client 192.3.33.208:41578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.conservativelabor.aafm.us"] [uri "/.git/HEAD"] [unique_id "apsgMJogtjmLlKhyltjm_AAAAZI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-04 14:56:21
(1 week ago)
[04/Sep/2026:17:56:21 +0300] -- 192.3.33.208 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack