๐ฌ๐ง
pinguin
2026-06-15 03:38:14
(23 hours ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET meth ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /html/.git/config
UA: Mozilla/5.0 (Linux; Android 9; SM-G970U1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฌ๐ง
consul.to
2026-06-15 03:36:55
(23 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:29:21
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:29:13.689958 2026] [security2:error] [pid 15252:tid 15252] [client 34.22.45.134:56630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "visitcampbellford.com"] [uri "/app/.git/config"] [unique_id "ai9xiaBcZlCsvQVeu4pI3gAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 02:51:48
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
Anonymous
2026-06-15 02:45:31
(1 day ago)
34.22.45.134 - - [15/Jun/2026:04:45:26 +0200] "GET /static/.git/config HTTP/1.1" 404 117 "-" "Mozill ...
show more
34.22.45.134 - - [15/Jun/2026:04:45:26 +0200] "GET /static/.git/config HTTP/1.1" 404 117 "-" "Mozilla/5.0 (BlackBerry; U; BlackBerry 9800; en) AppleWebKit/534.1 (KHTML, Like Gecko) Version/6.0.0.141 Mobile Safari/534.1"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:37:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:37:20.749541 2026] [security2:error] [pid 12735:tid 12735] [client 34.22.45.134:33812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wealthsec.com"] [uri "/v3/.git/config"] [unique_id "ai9XUP4QeQhwy7WRBFgJFAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
andypiper
2026-06-15 01:02:59
(1 day ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐ซ๐ท
pm33
2026-06-15 00:48:50
(1 day ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:33:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:32:58.390075 2026] [security2:error] [pid 14243:tid 14243] [client 34.22.45.134:57048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lawrencehale.com"] [uri "/app/.git/config"] [unique_id "ai9IOoDeouSZ3jTSYekA9QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-15 00:11:40
(1 day ago)
2.351 requests from abuseipdb.com blacklisted IP (1yr10mos3w)
Brute-Force
Bad Web Bot
๐ฉ๐ช
4server
2026-06-14 23:54:40
(1 day ago)
[MonJun1501:54:35.4474282026][security2:error][pid3433961:tid3433967][client34.22.45.134:0]ModSecuri ...
show more
[MonJun1501:54:35.4474282026][security2:error][pid3433961:tid3433967][client34.22.45.134:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"laumeiconsulting.com.136-243-54-122.cpanel.site\"][uri\"/frontend/.git/config\"][unique_id\"ai8_O_VHKKAbdH2Vu-gNtgAAAAI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
Holger
2026-06-14 23:54:19
(1 day ago)
WordPress WebAttack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:53:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:53:13.019710 2026] [security2:error] [pid 27025:tid 27025] [client 34.22.45.134:56172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amazingthailand.net.convoyforkids.com"] [uri "/html/.git/config"] [unique_id "ai8-6dnlbj5npsMhka4HmQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:38:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.134 (134.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:38:10.407431 2026] [security2:error] [pid 18943:tid 18943] [client 34.22.45.134:54922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "systemcapacityoptimization.com"] [uri "/v3/.git/config"] [unique_id "ai87YqalBQA3vAN0vUxBSQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-14 22:23:59
(1 day ago)
(modsecurity) srv104 ModSecurity 34.22.45.134 (US/United States/134.45.22.34.bc.googleusercontent.co ...
show more
(modsecurity) srv104 ModSecurity 34.22.45.134 (US/United States/134.45.22.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack