๐ฎ๐ณ
evicky2002
2026-05-20 04:30:47
(1 month ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ณ๐ฑ
oisecnet
2026-05-08 21:01:48
(1 month ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-05-08. 30 requests from this ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-05-08. 30 requests from this IP.
show less
Brute-Force
Web App Attack
SSH
๐ฉ๐ช
Ba-Yu
2026-05-08 16:22:17
(1 month ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ฎ
as211431.net
2026-05-08 06:06:31
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from IT.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from IT.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Mobile; Windows Phone 8.1; Android 4.0; ARM; Trident/7.0; Touch; rv:11.0; IEMobile/11.0; NOKIA; Lumia 929) like iPhone OS 7_0_3 Mac OS X AppleWebKit/537 (KHTML, like Gecko) Mobile Safari/537
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-08 05:46:36
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 01:46:28.805286 2026] [security2:error] [pid 25877:tid 25885] [client 34.17.81.162:48188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aisapy.com"] [uri "/.git/config"] [unique_id "af14tF7k_-B6kG7P7kMfrgAAAMU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MM-bot
2026-05-08 05:36:19
(1 month ago)
URL-probe: HTTP/1.1 GET request on /.git/config (2026-05-08 07:36:19 UTC+2)
Web App Attack
Hacking
๐ง๐ช
cmbplf
2026-05-08 05:30:33
(1 month ago)
909 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-08 04:56:34
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 00:56:30.158782 2026] [security2:error] [pid 31124:tid 31124] [client 34.17.81.162:45348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wedemandabetterplan.empoweruohio.org"] [uri "/.git/config"] [unique_id "af1s_s0h94KJOSSkpWetTwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 04:36:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 00:36:21.905935 2026] [security2:error] [pid 13183:tid 13183] [client 34.17.81.162:60924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.itimetable21.com"] [uri "/.git/config"] [unique_id "af1oRRHTdPV5s-O_Ge1nEQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 04:06:39
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 00:06:33.131230 2026] [security2:error] [pid 7010:tid 7010] [client 34.17.81.162:58466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.application.oxfordgliding.com"] [uri "/.git/config"] [unique_id "af1hSTMOz3_-MuL7fGzGzAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 03:46:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 23:46:25.191968 2026] [security2:error] [pid 29553:tid 29553] [client 34.17.81.162:35738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.kbalan.com"] [uri "/.git/config"] [unique_id "af1ckcO-fQuxzbkm_RUyjwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 03:26:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 23:26:29.028034 2026] [security2:error] [pid 7168:tid 7168] [client 34.17.81.162:44878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tees4three.gamedayincentives.com"] [uri "/.git/config"] [unique_id "af1X5YZXbMkY8KivflHgCgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 03:07:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 23:07:30.277818 2026] [security2:error] [pid 13864:tid 13864] [client 34.17.81.162:49944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.revelation-of-truth.galaxyretro.com"] [uri "/.git/config"] [unique_id "af1TcswhNURZGxjeLA6VggAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 02:27:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 22:27:27.436629 2026] [security2:error] [pid 17418:tid 17418] [client 34.17.81.162:58120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "undergroundh2o.com"] [uri "/.git/config"] [unique_id "af1KD5v1UbVdKQUktgmvaAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 01:57:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.81.162 (162.81.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 21:57:25.369287 2026] [security2:error] [pid 15204:tid 15204] [client 34.17.81.162:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kidswithcamerasmovie.com"] [uri "/.git/config"] [unique_id "af1DBQSZq_kgL7Rx8RYhLQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack