๐ณ๐ฑ
Site.eu
2026-09-18 05:49:30
(2 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-17 08:18:58
(1 day ago)
Scanner hitting /.git/config on n8p.osef.cloud (GOOGL-2) โ aaguard
Brute-Force
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-17 03:56:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:56:20.237854 2026] [security2:error] [pid 29294:tid 29294] [client 34.35.103.165:37390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "proof.bonefrog.com"] [uri "/.git/config"] [unique_id "aqtk5JDg3cu3Tw-fzlFJIwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-17 03:05:00
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-17 02:29:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 22:29:48.120874 2026] [security2:error] [pid 16586:tid 16600] [client 34.35.103.165:39668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "promoralchoice.org"] [uri "/.git/config"] [unique_id "aqtQnF7IBcljeN8jXJKQ3QAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-09-16 16:56:19
(1 day ago)
Too many 404 requests [BY]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:49:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:49:45.509008 2026] [security2:error] [pid 6029:tid 6029] [client 34.35.103.165:43476] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "moanddoyle.michaelprussin.com"] [uri "/.git/config"] [unique_id "aqq6mVpy1SBbWaJYBn9XvgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-09-16 15:17:53
(1 day ago)
Malware host detected by rbl.malware.expert. RBL lookup of 165.103.35.34.rbl.malware.expert succeede ...
show more
Malware host detected by rbl.malware.expert. RBL lookup of 165.103.35.34.rbl.malware.expert succeeded at REMOTE_ADDR. (400010-mnz6-1)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 14:06:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:06:50.201474 2026] [security2:error] [pid 21255:tid 21255] [client 34.35.103.165:38186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mngop47.org"] [uri "/.git/config"] [unique_id "aqqiehqISeAAv0-Fh5t7dAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 14:04:48
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 13:29:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.103.165 (165.103.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:29:29.393561 2026] [security2:error] [pid 21684:tid 21684] [client 34.35.103.165:44572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mnalabama.com"] [uri "/.git/config"] [unique_id "aqqZuTbnvslF9d4Pi88wIQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-16 12:42:47
(1 day ago)
[16/Sep/2026:15:42:47 +0300] -- 34.35.103.165 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[16/Sep/2026:15:42:47 +0300] -- 34.35.103.165 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-09-15 20:51:47
(2 days ago)
Triggered Cloudflare WAF (linkMaze) from ZA.
Action taken: LINK_MAZE_INJECTED
Protocol: HTTP/1.1 (GE ...
show more
Triggered Cloudflare WAF (linkMaze) from ZA.
Action taken: LINK_MAZE_INJECTED
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
Tsumugi Kotobuki
2026-09-15 20:28:14
(2 days ago)
Web Scan (L7) | Paths: /.git/config | Codes: 444(1x) | rDNS: 165.103.35.34.bc.googleusercontent.com ...
show more
Web Scan (L7) | Paths: /.git/config | Codes: 444(1x) | rDNS: 165.103.35.34.bc.googleusercontent.com | F2B/angie-path-trap@2026-09-15T20:28:14Z
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 20:00:09
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack