๐จ๐ญ
YF
2026-06-10 17:05:17
(2 weeks ago)
404 errors Vulnerability scan
Web App Attack
๐ซ๐ท
masterguru
2026-06-10 16:30:42
(2 weeks ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.159.215.244 (244.215.159.34.bc.googleuserco ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 34.159.215.244 (244.215.159.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 21:59:28
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:00:44
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 21:12:28
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 17:12:24.464895 2026] [security2:error] [pid 31716:tid 31716] [client 34.159.215.244:59628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.flyinganorak.com.abbeygardensllandudno.com"] [uri "/.git/config"] [unique_id "aicwOCbzaukJS180HQ73xwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 19:54:25
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 15:54:19.710606 2026] [security2:error] [pid 21828:tid 21828] [client 34.159.215.244:53852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "internationalavionics.com"] [uri "/.git/config"] [unique_id "aicd6wxwcv8oi_0MmqbhawAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 17:09:13
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:09:07.968431 2026] [security2:error] [pid 9118:tid 9118] [client 34.159.215.244:38544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anthonyvanstyn.com"] [uri "/.git/config"] [unique_id "aib3M6H0rRc4KNPYh4YwNAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-08 16:44:50
(2 weeks ago)
Try to access /.git/config
Web App Attack
Anonymous
2026-06-08 16:09:18
(2 weeks ago)
34.159.215.244 - - [08/Jun/2026:18:09:18 +0200] "GET /.git/config HTTP/1.1" 403 2338 "-" "Opera/9.80 ...
show more
34.159.215.244 - - [08/Jun/2026:18:09:18 +0200] "GET /.git/config HTTP/1.1" 403 2338 "-" "Opera/9.80 (X11; FreeBSD 8.1-RELEASE i386; Edition Next) Presto/2.12.388 Version/12.10"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 16:02:03
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 12:01:57.072650 2026] [security2:error] [pid 22165:tid 22165] [client 34.159.215.244:39694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.global.ic1.biz"] [uri "/.git/config"] [unique_id "aibndUE8Fk8PHlWIDGadRwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-08 15:12:16
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (X11; Ubuntu; Linux; rv:67.0) Gecko/20100101 Firefox/67.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-08 13:27:20
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 09:27:11.918707 2026] [security2:error] [pid 18759:tid 18759] [client 34.159.215.244:48948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.title27.itaxcenter.com"] [uri "/.git/config"] [unique_id "aibDL1d6NSqDqEUIVl0EIgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 10:34:28
(2 weeks ago)
34.159.215.244 - - [08/Jun/2026:10:34:27 +0000] "GET /.git/config HTTP/1.1" 403 2800 "-" "Opera/9.5 ...
show more
34.159.215.244 - - [08/Jun/2026:10:34:27 +0000] "GET /.git/config HTTP/1.1" 403 2800 "-" "Opera/9.5 (Microsoft Windows; PPC; Opera Mobi; U) SonyEricssonX1i/R2AA Profile/MIDP-2.0 Configuration/CLDC-1.1"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 09:12:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.215.244 (244.215.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 05:12:19.928866 2026] [security2:error] [pid 3671:tid 3671] [client 34.159.215.244:32970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "efhgtc.org"] [uri "/.git/config"] [unique_id "aiaHc6_crE7yOR7Kw2jT3AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ParaBug
2026-06-08 08:42:54
(2 weeks ago)
34.159.215.244 - - [08/Jun/2026:10:42:52 +0200] "GET /.git/config HTTP/1.1" 404 16539 "-" "Mozilla/4 ...
show more
34.159.215.244 - - [08/Jun/2026:10:42:52 +0200] "GET /.git/config HTTP/1.1" 404 16539 "-" "Mozilla/4.0 (compatible; MSIE 5.15; Mac_PowerPC)"
...
show less
Phishing
Brute-Force
Web App Attack