๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:08
(15 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ง๐ช
cmbplf
2026-06-15 10:35:46
(1 day ago)
1.867 requests with url.path *.git/*
1.700 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐ซ๐ท
masterguru
2026-06-15 10:12:38
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 09:57:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:57:52.193655 2026] [security2:error] [pid 11913:tid 11913] [client 34.162.98.211:56378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pinkdrink.com.digitalracemedia.com"] [uri "/.git/config"] [unique_id "ai_MoOI-CcuIG2giflOL0wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 09:21:21
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 09:20:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:20:07.807597 2026] [security2:error] [pid 31348:tid 31348] [client 34.162.98.211:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "akula.365soft.top"] [uri "/app/.git/config"] [unique_id "ai_Dxwo01hOefDSEFrcxkQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 09:17:42
(1 day ago)
(modsecurity) srv102 ModSecurity 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 10 in the l ...
show more
(modsecurity) srv102 ModSecurity 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:44:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:44:29.396479 2026] [security2:error] [pid 14737:tid 14737] [client 34.162.98.211:47506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "reneehill.mydobdate.net"] [uri "/v2/.git/config"] [unique_id "ai-7bTRWpcUE53sCItMAdQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:14:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:14:39.359293 2026] [security2:error] [pid 1283:tid 1327] [client 34.162.98.211:33078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sunshinepumpers.com"] [uri "/.git/config"] [unique_id "ai-0b9UaPUFwKls8F3S2cgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:37:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:37:54.472997 2026] [security2:error] [pid 1665:tid 1694] [client 34.162.98.211:41020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.deathbyaudiostore.killerrockandroll.com"] [uri "/app/.git/config"] [unique_id "ai-r0jomAg0zgMUZvmavxwAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-15 07:15:21
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /symfony/.git/config
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3803.0 Safari/537.36 Edg/76.0.174.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-06-15 06:36:03
(1 day ago)
34.162.98.211 - - [15/Jun/2026:14:36:02 +0800] "GET /frontend/.git/config HTTP/1.1" 301 236 "-" "Moz ...
show more
34.162.98.211 - - [15/Jun/2026:14:36:02 +0800] "GET /frontend/.git/config HTTP/1.1" 301 236 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.142 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:36:01
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.162.98.211 (211.98.162.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.162.98.211 (211.98.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:35:55.542762 2026] [security2:error] [pid 14135:tid 14135] [client 34.162.98.211:59438] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.motonaonaobookings.hamiltonbookings.com"] [uri "/frontend/.git/config"] [unique_id "ai-dS2G-hfQrrIcpLFCy4AAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-06-15 06:35:52
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.162.98.211 (US/United States/211.98.162.34.b ...
show more
(mod_security) mod_security (id:949110) triggered by 34.162.98.211 (US/United States/211.98.162.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-15 06:15:05
(1 day ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot