๐ณ๐ด
jad-abuse
2026-06-25 16:45:47
(4 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
๐บ๐ธ
aks4226
2026-06-25 16:45:14
(4 hours ago)
Attacking common web applications. (n01)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 16:40:25
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 12:40:20.840270 2026] [security2:error] [pid 5985:tid 5985] [client 34.71.159.70:58780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nypatriotcards.com"] [uri "/.git/config"] [unique_id "aj1Z9F9Jedgxs4Hb8cEDEAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Epimetheus
2026-06-25 16:06:12
(5 hours ago)
Unauthorized access attempts:
[GET] /.git/config
UA: Unknown
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 15:59:54
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 11:59:49.322864 2026] [security2:error] [pid 24217:tid 24217] [client 34.71.159.70:37862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nvafc.drxcontent.com"] [uri "/.git/config"] [unique_id "aj1QddoYeEVlC2d4QaVQ2gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-25 15:51:00
(5 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-25 15:40:16
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 11:40:10.315594 2026] [security2:error] [pid 14863:tid 14863] [client 34.71.159.70:42740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nutandboltguy.com"] [uri "/.git/config"] [unique_id "aj1L2jpyZ7Fe3gaW1Vj03gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-25 15:25:02
(5 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ฆ
Olexiy Backend
2026-06-25 15:15:18
(5 hours ago)
34.71.159.70
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 15:13:53
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 11:13:46.156528 2026] [security2:error] [pid 856:tid 856] [client 34.71.159.70:34634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nuevo.allcostaricarentals.com"] [uri "/.git/config"] [unique_id "aj1FqiJ9rpyMdSYnFkIP1gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Starburst SysOp Team
2026-06-25 15:11:40
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-nue6-1)
Hacking
Web App Attack
๐ต๐พ
armandosaucedo.me
2026-06-25 15:05:19
(6 hours ago)
Threat Intelligence via ARMTI, Web Attack: GET /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 14:57:48
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.71.159.70 (70.159.71.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 10:57:41.992284 2026] [security2:error] [pid 29723:tid 29740] [client 34.71.159.70:37040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ntv.myrasnyder.com"] [uri "/.git/config"] [unique_id "aj1B5a5Ly7w40wWuQjCtLAAAAM0"]
show less
Brute-Force
Bad Web Bot
Web App Attack