|
๐ฆ๐น
urnilxfgbez
|
|
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
|
Port Scan
|
|
|
๐ฎ๐น
Inartis
|
|
34.162.55.122 - - [15/May/2026:12:49:28 +0200] "GET /.git/config HTTP/1.1" 200 54691 "-" "Mozilla/5. ...
show more
34.162.55.122 - - [15/May/2026:12:49:28 +0200] "GET /.git/config HTTP/1.1" 200 54691 "-" "Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.1.2) Gecko/20090803 Ubuntu/9.04 (jaunty) Shiretoko/3.5.2"
...
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ฎ
as211431.net
|
|
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: wii libnup/1.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
|
Bad Web Bot
|
|
|
๐ณ๐ฑ
wlt-blocker
|
|
Unauthorized access to webpage admin
|
Web App Attack
|
|
|
๐ง๐ช
voormedia
|
|
Accessed trap at '/.git/config'
|
Web App Attack
|
|
|
๐ณ๐ฑ
Site.eu
|
|
Excessive multi-domain requests
|
Brute-Force
|
|
|
๐ต๐ฑ
Roper123
|
|
Web app exploits
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 02:16:03.159596 2026] [security2:error] [pid 5688:tid 5688] [client 34.162.55.122:34768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cmcnow.cmcnow.net"] [uri "/.git/config"] [unique_id "aga6I_3ismWBwuA-NW10EAAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
IP banned by Fail2Ban in jail nginx-abusive-ips
|
Web App Attack
Brute-Force
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 01:20:03.097337 2026] [security2:error] [pid 23895:tid 23895] [client 34.162.55.122:41926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vadgossos.org.zentinex.com"] [uri "/.git/config"] [unique_id "agatA8OgJkdoEZEY25HG_wAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ง๐ท
Sabrina Soto
|
|
Probe for vulnerabilities. Path attempted: /.git/config
|
Web App Attack
|
|
|
Anonymous
|
|
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
|
Exploited Host
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 00:27:42.743683 2026] [security2:error] [pid 1787:tid 1787] [client 34.162.55.122:32902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mhservice.mayan.abecasis.com"] [uri "/.git/config"] [unique_id "agagvsapR5VHd-i-Rlg6ZAAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
Fuzzing/Looking for credentials files.
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.55.122 (122.55.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 23:55:42.374119 2026] [security2:error] [pid 4986:tid 4986] [client 34.162.55.122:41846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plumduff.microdot.net"] [uri "/.git/config"] [unique_id "agaZPl8zCqaLZ2FbsTQytQAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|