๐ซ๐ท
masterguru
2026-09-03 16:20:33
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.40.245.98 (AU/Australia/98.245.40. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.40.245.98 (AU/Australia/98.245.40.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
hyena
2026-09-03 15:31:21
(2 weeks ago)
Repeated mod_security events.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 14:00:42
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 10:00:34.277309 2026] [security2:error] [pid 18769:tid 18769] [client 34.40.245.98:60692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thedenzers.com"] [uri "/htdocs/.git/config"] [unique_id "apl9gkijCiw8TncMJDwnKwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-09-03 13:37:59
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from AU.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /htdocs/.git/config
UA: crusader-worker/1.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-03 12:51:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:51:51.101297 2026] [security2:error] [pid 14166:tid 14166] [client 34.40.245.98:57178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.artglass-jerusalem.net"] [uri "/src/.git/config"] [unique_id "apltZ2v3oVviXTIJqJwLnQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 12:31:12
(2 weeks ago)
[da.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/public/.git/config | /htdoc ...
show more
[da.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/public/.git/config | /htdocs/.git/config | /html/.git/config
show less
Hacking
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-03 11:16:40
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-03 10:37:55
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 06:37:51.964184 2026] [security2:error] [pid 421:tid 421] [client 34.40.245.98:43412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seacorre.seacorre.com"] [uri "/html/.git/config"] [unique_id "aplN_zPYt9yodYVlSK0sxAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-03 08:55:04
(2 weeks ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
Anonymous
2026-09-03 08:18:25
(2 weeks ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-03 08:00:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.245.98 (98.245.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 04:00:26.314729 2026] [security2:error] [pid 9103:tid 9103] [client 34.40.245.98:50682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blockadegc.com"] [uri "/wordpress/.git/config"] [unique_id "apkpGn0DnBxeHOWDZDU_HQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-03 07:55:33
(2 weeks ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-09-03 07:50:29
(2 weeks ago)
Unauthorized access to webpage admin
Web App Attack
Anonymous
2026-09-03 07:50:07
(2 weeks ago)
| [Dangerous/Australia] Aggressive IP 34.40.245.98 (~30 hits). Type: DoS Defender- Web server 400 er ...
show more
| [Dangerous/Australia] Aggressive IP 34.40.245.98 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
theanalogmaker
2026-09-03 07:46:55
(2 weeks ago)
CrowdSec: crowdsecurity/http-sensitive-files (24h ban)
Brute-Force
Web App Attack