๐ฉ๐ช
SCHAPPY
2026-09-24 09:30:48
(1 day ago)
Malicious activity from IP detected: crowdsecurity/http-sensitive-files.
Web App Attack
Hacking
๐ฌ๐ง
consul.to
2026-09-24 08:41:40
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
javierin
2026-09-24 08:33:23
(1 day ago)
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /api/.git/config HTTP/1.1" 404 146 "-" "crusader ...
show more
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /api/.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /app/.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /www/.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /public/.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /html/.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /src/.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /wordpress/.git/config HTTP/1.1" 404 146 "-" "crusader-worker/1.0"
34.65.235.232 - - [24/Sep/2026:08:33:22 +0000] "GET /var/www/.git/config HTTP/1.1" 404 146
...
show less
Hacking
Web App Attack
๐ซ๐ฎ
as211431.net
2026-09-24 08:19:06
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from CH.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from CH.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /site/.git/config
UA: crusader-worker/1.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ซ๐ท
dynamix
2026-09-24 07:07:01
(1 day ago)
Multiple WAF Violations
Web App Attack
๐จ๐ญ
zynex
2026-09-24 05:19:53
(1 day ago)
CrowdSec crowdsecurity/http-sensitive-files
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-24 05:17:24
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2026-09-24 05:16:18
(1 day ago)
apache vulnerability scan
Web App Attack
Anonymous
2026-09-24 05:03:58
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-23 19:03:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 15:03:50.738013 2026] [security2:error] [pid 25832:tid 25832] [client 34.65.235.232:33382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cgautomatizacion.com"] [uri "/htdocs/.git/config"] [unique_id "arQilqKLC2zV9_PlQ0TvogAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-09-23 18:30:33
(2 days ago)
Automated honeypot detection. blocked ip against a Next.js application. Paths: /.git/config, /app/.g ...
show more
Automated honeypot detection. blocked ip against a Next.js application. Paths: /.git/config, /app/.git/config. Blocked at the edge.
show less
Bad Web Bot
๐บ๐ธ
conrad10781
2026-09-23 17:56:13
(2 days ago)
nginx-4xx
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 16:11:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 12:11:39.012573 2026] [security2:error] [pid 30752:tid 30752] [client 34.65.235.232:58138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookofraphael.com"] [uri "/.git/config"] [unique_id "arP6O1_YEAvqoRH8N8Wc2AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 14:28:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 10:28:21.129406 2026] [security2:error] [pid 31526:tid 31526] [client 34.65.235.232:40694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bowdens-landing.com"] [uri "/htdocs/.git/config"] [unique_id "arPiBdSXrZRs87Z4KyRm1gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 12:57:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.235.232 (232.235.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 08:57:34.591237 2026] [security2:error] [pid 18625:tid 18625] [client 34.65.235.232:59688] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackriverarc.org"] [uri "/www/.git/config"] [unique_id "arPMvlf-DcKTO9taXEgfBgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack