๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:03:17
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 13:25:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:25:09.812335 2026] [security2:error] [pid 10626:tid 10626] [client 34.132.113.249:52600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plattlawgroup.com"] [uri "/.git/config"] [unique_id "aigUNcWplXcamg0XHmSFigAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-09 11:58:32
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Linux; Android 7.0; FRD-L09) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 09:55:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:55:04.924015 2026] [security2:error] [pid 30094:tid 30094] [client 34.132.113.249:39946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.bayarealangarts.com"] [uri "/.git/config"] [unique_id "aifi-O1kfTIRRxS2u01AmQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:55:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:55:29.621008 2026] [security2:error] [pid 19620:tid 19620] [client 34.132.113.249:45726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "compliancedepts.com"] [uri "/.git/config"] [unique_id "aifVAfZvdBFD2hPrZn0vEgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
TheCoon
2026-06-09 08:30:01
(1 week ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
Anonymous
2026-06-09 05:55:02
(1 week ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:48:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:48:19.882962 2026] [security2:error] [pid 8512:tid 8512] [client 34.132.113.249:33956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tomflynn.smilingorc.com"] [uri "/.git/config"] [unique_id "aiebE26MhnOmfmEatNUerAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:32:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:32:41.370375 2026] [security2:error] [pid 21562:tid 21562] [client 34.132.113.249:57108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "volkerjahn.estate"] [uri "/.git/config"] [unique_id "aieJWb1-ydutrbDg3QHJ8gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-09 03:30:45
(1 week ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.132.113.249 (US/United States/24 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.132.113.249 (US/United States/249.113.132.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:18:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.132.113.249 (249.113.132.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:18:03.913284 2026] [security2:error] [pid 4585:tid 4585] [client 34.132.113.249:58168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "danged.com"] [uri "/.git/config"] [unique_id "aidpy9UbnFh_kYZ3y7Q5swAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-09 00:54:16
(1 week ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
mashamal
2026-06-09 00:34:04
(1 week ago)
Vulnerability Probe
...
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:04:36
(1 week ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking
๐ท๐บ
OK
2026-06-08 21:13:14
(1 week ago)
HTTP/HTTPS
Hacking
Web App Attack