๐บ๐ธ
stdcout9090
2026-09-01 12:01:23
(3 hours ago)
AetherGuard WAF blocked: Matched phrase "/.git/" at REQUEST_URI.
Target: management.aetherguard.xyz/ ...
show more
AetherGuard WAF blocked: Matched phrase "/.git/" at REQUEST_URI.
Target: management.aetherguard.xyz/.git/config
Payload / matched WAF rule data:
User-Agent: Mozilla/5.0 (X11; Linux x86_64)
show less
Web App Attack
๐ฉ๐ช
4server
2026-09-01 05:06:23
(10 hours ago)
[TueSep0107:06:19.8002322026][security2:error][pid3698295:tid3698407][client34.12.243.89:0]ModSecuri ...
show more
[TueSep0107:06:19.8002322026][security2:error][pid3698295:tid3698407][client34.12.243.89:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"massimilianoparquet.ch\"][uri\"/.git/config\"][unique_id\"apZdS2Y3_h8862wlFTnyugAAANI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฆ๐บ
MAGIC
2026-09-01 05:06:21
(10 hours ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ต๐ฑ
sefinek.net
2026-09-01 05:05:48
(10 hours ago)
Triggered Cloudflare WAF (firewallCustom) from NL.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from NL.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-09-01 05:04:53
(10 hours ago)
34.12.243.89 - - [01/Sep/2026:13:04:52 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 ( ...
show more
34.12.243.89 - - [01/Sep/2026:13:04:52 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (X11; Linux x86_64)"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-01 05:02:55
(10 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.12.243.89 (89.243.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.12.243.89 (89.243.12.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:02:27
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.12.243.89 (89.243.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.12.243.89 (89.243.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:02:18.907993 2026] [security2:error] [pid 19154:tid 19154] [client 34.12.243.89:48444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.serenimedit.com"] [uri "/.git/config"] [unique_id "apZcWkRVbgFxEuSUrHzRogAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
CBJ
2026-09-01 05:00:07
(10 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐ซ๐ท
Bensay
2026-09-01 04:57:58
(10 hours ago)
HTTP web-app probe; method=GET; path=/.git/config; status=403; user-agent=Mozilla/5.0 (X11; Linux x8 ...
show more
HTTP web-app probe; method=GET; path=/.git/config; status=403; user-agent=Mozilla/5.0 (X11; Linux x86_64)
show less
Web App Attack
๐ฉ๐ช
Blexyel
2026-09-01 04:57:49
(10 hours ago)
34.12.243.89 - - [01/Sep/2026:06:57:48 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 ( ...
show more
34.12.243.89 - - [01/Sep/2026:06:57:48 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 (X11; Linux x86_64)"
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 04:56:42
(10 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 04:45:54
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.12.243.89 (89.243.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.12.243.89 (89.243.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:45:50.589921 2026] [security2:error] [pid 3238:tid 3238] [client 34.12.243.89:40118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lahaciendaolivia.com"] [uri "/.git/config"] [unique_id "apZYfu_JSChbuJENK0t_LgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-09-01 04:43:27
(10 hours ago)
-:443 34.12.243.89 - - [01/Sep/2026:06:43:26 +0200] - "GET /.git/config HTTP/1.1" 404 7394 "-" "Mozi ...
show more
-:443 34.12.243.89 - - [01/Sep/2026:06:43:26 +0200] - "GET /.git/config HTTP/1.1" 404 7394 "-" "Mozilla/5.0 (X11; Linux x86_64)"
show less
Bad Web Bot
๐ฌ๐ง
pinguin
2026-09-01 04:41:57
(10 hours ago)
Triggered Cloudflare WAF (firewallManaged) from NL.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from NL.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (X11; Linux x86_64)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ด
jad-abuse
2026-09-01 04:41:24
(10 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack