🇺🇸
TPI-Abuse
2026-09-03 02:56:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 22:56:21.818202 2026] [security2:error] [pid 2243:tid 2243] [client 34.162.226.252:42310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carlsvoice.com"] [uri "/.git/config"] [unique_id "apjh1fcT8THQz-918gNPhQAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
dbmwebdesign
2026-09-03 02:25:09
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇳🇱
Site.eu
2026-09-03 02:06:08
(1 day ago)
Excessive multi-domain requests
Brute-Force
🇫🇷
masterguru
2026-09-03 01:42:02
(1 day ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
🇸🇪
vaia.cloud
2026-09-03 00:10:01
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 23:21:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 19:21:32.343123 2026] [security2:error] [pid 16607:tid 16607] [client 34.162.226.252:52118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carlgrauelcsw.com.onyxcc.com"] [uri "/.git/config"] [unique_id "apivfBn16UYJN3MJDTdvZAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 21:38:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 17:37:58.076329 2026] [security2:error] [pid 6039:tid 6039] [client 34.162.226.252:45278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carjinn.net"] [uri "/.git/config"] [unique_id "apiXNqLoWC25k7ZqEEpwnAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Octopuce
2026-09-02 19:01:05
(1 day ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 18:39:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:39:03.301572 2026] [security2:error] [pid 29654:tid 29654] [client 34.162.226.252:43928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caribbeantracking.com"] [uri "/.git/config"] [unique_id "aphtR_SNoCT2tb_OrPQbuwAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 18:18:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:18:07.637750 2026] [security2:error] [pid 3738:tid 3738] [client 34.162.226.252:34454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caribbeancoders.com"] [uri "/.git/config"] [unique_id "aphoX6ugx2oT6rdj3n2GSQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Lee Daniel
2026-09-02 18:13:22
(1 day ago)
34.162.226.252 - - [02/Sep/2026:14:13:22 -0400] "GET /.env HTTP/1.1" 403 6331 "-" "Mozilla/5.0 (Maci ...
show more
34.162.226.252 - - [02/Sep/2026:14:13:22 -0400] "GET /.env HTTP/1.1" 403 6331 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 17:15:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.226.252 (252.226.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:15:32.270425 2026] [security2:error] [pid 32302:tid 32318] [client 34.162.226.252:36036] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cargosanibel.com"] [uri "/.git/config"] [unique_id "aphZtGmqaDjdWeyvx7Z2wgAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
as211431.net
2026-09-02 01:13:36
(2 days ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST met ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
🇩🇪
pscriptos
2026-09-02 01:06:46
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/appsec-vpatch
Web App Attack
🇳🇱
ConsulHosting
2026-09-02 00:36:58
(2 days ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack