๐ฎ๐ณ
evicky2002
2026-05-14 06:00:00
(4 weeks ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฉ๐ช
Ba-Yu
2026-05-08 16:21:26
(1 month ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
consul.to
2026-05-08 08:41:01
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
๐จ๐ญ
TheCoon
2026-05-08 06:15:01
(1 month ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-08 05:12:35
(1 month ago)
(mod_security) mod_security (id:949110) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 01:12:28.440268 2026] [security2:error] [pid 18723:tid 18723] [client 34.7.243.218:49434] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "woodlandventures.com"] [uri "/.git/config"] [unique_id "af1wvOYx0jF_2ZeA6GUitwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-05-08 04:12:34
(1 month ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.7.243.218 (NL/The Netherlands/218. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.7.243.218 (NL/The Netherlands/218.243.7.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
David Ferneding
2026-05-08 04:02:30
(1 month ago)
Blocked by UFW (TCP on 80)
Source port: 34224
TTL: 58
Packet length: 60
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 80)
Source port: 34224
TTL: 58
Packet length: 60
TOS: 0x00
This report (for 34.7.243.218) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
Anonymous
2026-05-08 02:59:32
(1 month ago)
path attack /.git/config
Web App Attack
๐ฌ๐ง
Axel
2026-05-08 02:29:28
(1 month ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-05-08 02:19:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 22:19:19.335412 2026] [security2:error] [pid 26585:tid 26585] [client 34.7.243.218:59600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mumawvickers.com"] [uri "/.git/config"] [unique_id "af1IJ0ybWjzmKP4oev_BSAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-05-08 02:12:31
(1 month ago)
trolling for resource vulnerabilities
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-05-08 01:54:31
(1 month ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 01:54:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 21:54:19.281384 2026] [security2:error] [pid 14922:tid 14922] [client 34.7.243.218:39298] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unionega.com"] [uri "/.git/config"] [unique_id "af1CSxrgNgmt-31YYNjAHAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-05-08 01:44:25
(1 month ago)
[FriMay0803:44:21.4435122026][security2:error][pid1211607:tid1211736][client34.7.243.218:0]ModSecuri ...
show more
[FriMay0803:44:21.4435122026][security2:error][pid1211607:tid1211736][client34.7.243.218:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"tcservices.ch\"][uri\"/.git/config\"][unique_id\"af0_9Y1kM1qjwFVlZC0p8AAAARI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 01:07:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.243.218 (218.243.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 21:07:30.156840 2026] [security2:error] [pid 23977:tid 23977] [client 34.7.243.218:55826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qbasys.com"] [uri "/.git/config"] [unique_id "af03Uj7kcKqsp8X6EoBf3gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack