๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:04:24
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 11:06:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:06:32.299849 2026] [security2:error] [pid 10154:tid 10154] [client 34.101.108.85:43462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saboun.com"] [uri "/.git/config"] [unique_id "aifzuLUueukOh4L8b-U_8gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:05:53
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:05:48.624854 2026] [security2:error] [pid 3206:tid 3297] [client 34.101.108.85:40150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "epsbudgetcommittee.org"] [uri "/.git/config"] [unique_id "aifJXNtFnSrzL1hPE0q0XgAAAU0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2026-06-09 04:16:58
(1 week ago)
Web attack from 34.101.108.85
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:50:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:50:09.099163 2026] [security2:error] [pid 418:tid 418] [client 34.101.108.85:57534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.garagemensministry.michaelsabbey.org"] [uri "/.git/config"] [unique_id "aid_YRmiukF6mVHIQBbf0QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-09 01:26:30
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Linux; Android 8.0.0; WAS-LX1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.143 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฏ๐ต
beon
2026-06-09 01:20:33
(1 week ago)
[DateTime=>2026-06-09T01:20:33Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/.git/config] , [total_Hi ...
show more
[DateTime=>2026-06-09T01:20:33Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/.git/config] , [total_Hit=>once]
show less
Bad Web Bot
Web App Attack
Hacking
๐ง๐ช
voormedia
2026-06-09 00:52:25
(1 week ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 17:07:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:07:51.919189 2026] [security2:error] [pid 20396:tid 20396] [client 34.101.108.85:47296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.taylorcmurphy.the-it-man.com"] [uri "/.git/config"] [unique_id "aib255HFFSE_-r9uRVUeGQAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 16:32:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 12:32:21.481747 2026] [security2:error] [pid 21800:tid 21800] [client 34.101.108.85:33064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spyasociados.com"] [uri "/.git/config"] [unique_id "aibulfxfZp8CfTKGLhF5FgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 16:11:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 12:11:31.964224 2026] [security2:error] [pid 31133:tid 31133] [client 34.101.108.85:45018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.d.stoneast.com"] [uri "/.git/config"] [unique_id "aibps26DOG0LW7Bl9Z1BlwAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-08 13:29:25
(1 week ago)
[MonJun0815:29:20.0124312026][security2:error][pid1301837:tid1301889][client34.101.108.85:0]ModSecur ...
show more
[MonJun0815:29:20.0124312026][security2:error][pid1301837:tid1301889][client34.101.108.85:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.respiratrentino.it\"][uri\"/.git/config\"][unique_id\"aibDsDUMactg0vhaGaTptQAAABc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 12:20:39
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 08:20:32.058248 2026] [security2:error] [pid 20694:tid 20694] [client 34.101.108.85:34334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pecholobo.com"] [uri "/.git/config"] [unique_id "aiazkNymTmI9ralHMHdhXwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 09:09:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 05:09:49.648856 2026] [security2:error] [pid 31404:tid 31404] [client 34.101.108.85:34620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thebarringtongroup.org"] [uri "/.git/config"] [unique_id "aiaG3X7ilQBDJNhMff9rxgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 06:25:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.108.85 (85.108.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 02:25:31.357549 2026] [security2:error] [pid 13005:tid 13005] [client 34.101.108.85:60044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aicoursefactory.com"] [uri "/.git/config"] [unique_id "aiZgW_RLO52AvC31MMK42gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack