๐ซ๐ฎ
as211431.net
2026-06-15 04:04:09
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /laravel/.git/config
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.103 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 03:21:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:21:14.281907 2026] [security2:error] [pid 12797:tid 12797] [client 34.22.45.25:37030] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.devrocky-ridgecocom.rocky-ridgeco.com"] [uri "/.git/config"] [unique_id "ai9vqmFKCFkP3NT3-qeOgQAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 02:05:03
(1 day ago)
suspicious request in access.log
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 01:51:00
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-15 00:29:33
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.22.45.25 (US/United States/25.45 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.22.45.25 (US/United States/25.45.22.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 00:19:55
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
Philister11
2026-06-15 00:17:15
(1 day ago)
CrowdSec: crowdsecurity/http-probing (US/AS396982)
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-14 22:49:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:49:36.585857 2026] [security2:error] [pid 27814:tid 27814] [client 34.22.45.25:40600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.springb.mordesign1.com"] [uri "/v2/.git/config"] [unique_id "ai8wAB6Dd4PwvZEn6M-_jAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-06-14 22:10:10
(1 day ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 07:23:27
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 03:23:22.828737 2026] [security2:error] [pid 25929:tid 25929] [client 34.22.45.25:46758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bizecommnet.bizecomm.com"] [uri "/app/.git/config"] [unique_id "ai5W6hKs_n69ziKyVj5gcQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-06-14 06:39:53
(2 days ago)
Web scanning / probing for vulnerable paths | URL: /web/.git/config | Evidence: bluetreasure.pt 34.2 ...
show more
Web scanning / probing for vulnerable paths | URL: /web/.git/config | Evidence: bluetreasure.pt 34.22.45.25 - - [14/Jun/2026:08:39:36 +0200] \"GET /web/.git/config HTTP/1.1\" 404 20404 \"-\" \"Mozilla/5.0 (Linux; Android 8.0.0; SM-G950U1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36\" GEOIP_COUNTRY_CODE=US | ASN: GOOGLE-CLOUD-PLATFORM | Country: US
show less
Port Scan
Web App Attack
๐จ๐ญ
4server
2026-06-14 06:28:00
(2 days ago)
[SunJun1408:27:54.3791222026][security2:error][pid879033:tid879328][client34.22.45.25:0]ModSecurity: ...
show more
[SunJun1408:27:54.3791222026][security2:error][pid879033:tid879328][client34.22.45.25:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.garnimolinazzo.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"ai5J6hn66WhqR-3JDoq_pwAAAI0\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-14 06:25:52
(2 days ago)
Try to access /frontend/.git/config
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 06:00:17
(2 days ago)
20 attempts against mh-misbehave-ban on orcus
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 05:53:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.45.25 (25.45.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 01:53:31.736471 2026] [security2:error] [pid 12821:tid 12821] [client 34.22.45.25:59780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.earthwormensemble.doublenaughtspycar.com"] [uri "/dashboard/.git/config"] [unique_id "ai5B2yPS_UDdwrwoJlBgpQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack