Anonymous
2026-06-09 13:59:03
(1 week ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ง๐ช
cmbplf
2026-06-09 13:22:23
(1 week ago)
12.123 4xx requests in 1 hour (3d1h48m)
Brute-Force
Bad Web Bot
๐ซ๐ฎ
mnazibo
2026-06-09 10:30:06
(1 week ago)
Date: Jun 09 13:29:12 2026 EAT | Reported IP: 34.151.155.117 mod_security | id: 930130 949110 | AU/u ...
show more
Date: Jun 09 13:29:12 2026 EAT | Reported IP: 34.151.155.117 mod_security | id: 930130 949110 | AU/usernameab.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5)
show less
SQL Injection
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 09:59:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:59:18.289230 2026] [security2:error] [pid 1131:tid 1131] [client 34.151.155.117:42394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whitelabelcasinoportal.net"] [uri "/.git/config"] [unique_id "aifj9sNHuoUlj2iuAiPvcQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:44:25
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:44:21.136726 2026] [security2:error] [pid 15042:tid 15042] [client 34.151.155.117:40284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "balivisaservice.com"] [uri "/.git/config"] [unique_id "aifSZTn03ZBlFFtJ9uuUjAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Little Iguana
2026-06-09 08:41:45
(1 week ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 08:09:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:09:20.257303 2026] [security2:error] [pid 20916:tid 20916] [client 34.151.155.117:48764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "postermodelsxxx.com"] [uri "/.git/config"] [unique_id "aifKMAZGOwqP00UvwTViVAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 07:49:49
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.151.155.117 (AU/Australia/117.155. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.151.155.117 (AU/Australia/117.155.151.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ซ๐ฎ
as211431.net
2026-06-09 06:29:32
(1 week ago)
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Android; Mobile; rv:35.0) Gecko/35.0 Firefox/35.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 06:19:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:19:40.558346 2026] [security2:error] [pid 5422:tid 5422] [client 34.151.155.117:60422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darrowco.com"] [uri "/.git/config"] [unique_id "aiewfM3as-wke-TlOIqHxgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-09 06:04:07
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:21:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:21:29.874260 2026] [security2:error] [pid 19596:tid 19596] [client 34.151.155.117:46914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3fabgals.com"] [uri "/.git/config"] [unique_id "aieUyQK2yuxZTWOzF4LIfQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
Francisco Carlos
2026-06-09 03:05:36
(1 week ago)
Honeypot captured 1 automated attack/scan requests (JR Save Tech). Types: git-leak. Sample: GET /.gi ...
show more
Honeypot captured 1 automated attack/scan requests (JR Save Tech). Types: git-leak. Sample: GET /.git/config
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:05:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.155.117 (117.155.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:05:19.348041 2026] [security2:error] [pid 9214:tid 9214] [client 34.151.155.117:60576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jakeis.link.greenlight.us"] [uri "/.git/config"] [unique_id "aieC7ymlDSa-23PRyKAUZwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-09 02:09:05
(1 week ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack