๐ณ๐ฑ
homeshowdomain.nl
2026-06-10 22:00:30
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-09.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 16:01:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:01:53.164988 2026] [security2:error] [pid 13175:tid 13175] [client 34.62.137.10:60700] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.q-mice.com.qcyprus.com"] [uri "/.git/config"] [unique_id "aig48eAwSTrmQFczcwCBWgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 15:48:08
(2 weeks ago)
34.62.137.10 - - [09/Jun/2026:17:48:02 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 ( ...
show more
34.62.137.10 - - [09/Jun/2026:17:48:02 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/56.0.2924.87 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:38:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:38:09.973026 2026] [security2:error] [pid 20130:tid 20130] [client 34.62.137.10:54308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.webcam.oxfordgliding.com"] [uri "/.git/config"] [unique_id "aigzYdXL34xuCQvlw3VySwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:10:30
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:10:25.175133 2026] [security2:error] [pid 24278:tid 24278] [client 34.62.137.10:48510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.market1st.bridgital.com"] [uri "/.git/config"] [unique_id "aigs4bgptvfYYFModXK9mAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 14:50:37
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:50:34.061335 2026] [security2:error] [pid 28980:tid 28980] [client 34.62.137.10:55444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hal.hal.dance"] [uri "/.git/config"] [unique_id "aigoOoHx7lLcIejv-peBvQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-09 13:50:29
(2 weeks ago)
[TueJun0915:50:23.6358112026][security2:error][pid1344526:tid1344745][client34.62.137.10:0]ModSecuri ...
show more
[TueJun0915:50:23.6358112026][security2:error][pid1344526:tid1344745][client34.62.137.10:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.cpu-services.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"aigaH3qTbnB4Bo0hfDe0NgAAAQs\"]
show less
Hacking
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-09 11:55:09
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from BE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from BE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.80 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2026-06-09 10:56:58
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:48:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:48:39.790703 2026] [security2:error] [pid 12725:tid 12725] [client 34.62.137.10:50384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.starsmogsandiego.smogsandiego.com"] [uri "/.git/config"] [unique_id "aifvh2ChN9LW1c28YUYoGAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:08:44
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.137.10 (10.137.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:08:38.976028 2026] [security2:error] [pid 31491:tid 31515] [client 34.62.137.10:43702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pacific-medical.com.fevini.com"] [uri "/.git/config"] [unique_id "aifKBnBOsaI8Ya2Uo6Y2rgAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-09 04:13:47
(2 weeks ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐จ๐ญ
TheCoon
2026-06-09 01:45:01
(2 weeks ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐จ๐ญ
backslash
2026-06-09 01:42:01
(2 weeks ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:04:54
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking