๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:01:34
(3 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ฌ๐ง
consul.to
2026-06-15 08:31:00
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:26:08
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:26:04.531330 2026] [security2:error] [pid 28278:tid 28278] [client 34.40.142.70:42678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohanameetup.party"] [uri "/v3/.git/config"] [unique_id "ai-3HFFpgwRKSuBhTX0YOQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 07:21:03
(4 days ago)
34.40.142.70 - - [15/Jun/2026:07:21:03 +0000] "GET /backend/.git/config HTTP/1.1" 404 134 "-" "Mozil ...
show more
34.40.142.70 - - [15/Jun/2026:07:21:03 +0000] "GET /backend/.git/config HTTP/1.1" 404 134 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.71 (KHTML like Gecko) WebVideo/1.0.1.10 Version/7.0 Safari/537.71"
34.40.142.70 - - [15/Jun/2026:07:21:03 +0000] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (compatible; MSIE 10.0; Windows Phone 8.0; Trident/6.0; IEMobile/10.0; ARM; Touch; NOKIA; Lumia 920)"
...
show less
Web App Attack
๐ณ๐ฑ
debestelapp
2026-06-15 06:40:09
(4 days ago)
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-06-15 05:13:37
(4 days ago)
30 attacks on VC URLs:
GET /v1/.git/config HTTP/1.1
Hacking
๐ซ๐ฎ
as211431.net
2026-06-15 05:09:34
(4 days ago)
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /admin/.git/config
UA: Mozilla/5.0 (Linux; Android 9; SAMSUNG SM-G965W Build/PPR1.180610.011) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/9.4 Chrome/67.0.3396.87 Mobile Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-06-15 04:06:26
(4 days ago)
34.40.142.70 - - [15/Jun/2026:06:06:26 +0200] "GET /wp-content/.git/config HTTP/1.1" 403 118 "-" "Mo ...
show more
34.40.142.70 - - [15/Jun/2026:06:06:26 +0200] "GET /wp-content/.git/config HTTP/1.1" 403 118 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.8; rv:21.0) Gecko/20100101 Firefox/21.0"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-06-15 03:05:22
(4 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:55:57
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:55:52.944176 2026] [security2:error] [pid 12023:tid 12023] [client 34.40.142.70:37704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goodfrequencies.circleofsound.org"] [uri "/app/.git/config"] [unique_id "ai9puMOmzLa7jIQ64h2b7gAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:33:33
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:33:27.499128 2026] [security2:error] [pid 11817:tid 11817] [client 34.40.142.70:50604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taltonfamily.com"] [uri "/src/.git/config"] [unique_id "ai9kd2qKwkJ6FSngvyKM5gAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-15 02:28:39
(4 days ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
โจ
2026-06-15 01:30:13
(4 days ago)
Domain : rosannebarr.co.uk
Rule : config
2026-06-15 01:29:33 ***hidden-privacy*** GET /project/.git/ ...
show more
Domain : rosannebarr.co.uk
Rule : config
2026-06-15 01:29:33 ***hidden-privacy*** GET /project/.git/config - 443 - 34.40.142.70 HTTP/1.1 Mozilla/5.0 (Linux; Android 9; POCO F1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36 - www.rosannebarr.co.uk 404 8 0 1477 265 288 - -
show less
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-15 01:06:05
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.142.70 (70.142.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:06:00.195682 2026] [security2:error] [pid 27697:tid 27697] [client 34.40.142.70:39200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tangex.com"] [uri "/laravel/.git/config"] [unique_id "ai9P-DbaDZM8PF3Pfo_uPgAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
clamehost.it
2026-06-15 00:52:05
(4 days ago)
Automatic report - Brute Force attack using this IP address
Brute-Force