๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 21:59:35
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐จ๐ฆ
TechnoSolutions CL
2026-06-09 15:15:51
(2 days ago)
34.79.5.197 - - [09/Jun/2026:15:15:47 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (X11 ...
show more
34.79.5.197 - - [09/Jun/2026:15:15:47 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML like Gecko) Chrome/36.0.1985.125 Safari/537.36"
34.79.5.197 - - [09/Jun/2026:15:15:50 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:01:07
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:01:03.309515 2026] [security2:error] [pid 26983:tid 26983] [client 34.79.5.197:54806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theburiednews.com.thinkingepic.com"] [uri "/.git/config"] [unique_id "aigqrzGlAR4yboGsSuLOywAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:20:40
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:20:36.107495 2026] [security2:error] [pid 26963:tid 26963] [client 34.79.5.197:54580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theartbrush.tolenaar.com"] [uri "/.git/config"] [unique_id "aifo9AuZoAzYvL8jGTEQRAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:35:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:35:38.229538 2026] [security2:error] [pid 8853:tid 8870] [client 34.79.5.197:45890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.louisianaplasticsurgeon.com.aafm.us"] [uri "/.git/config"] [unique_id "aifeajct54BE8W2ai_4FrgAAAMs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:00:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:00:07.913764 2026] [security2:error] [pid 3340:tid 3344] [client 34.79.5.197:41124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "video.kd9uri.com"] [uri "/.git/config"] [unique_id "aifWFxClnv5fXCJA0-69QQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-09 07:35:40
(2 days ago)
[TueJun0909:35:36.2263962026][security2:error][pid6270:tid6698][client34.79.5.197:0]ModSecurity:Acce ...
show more
[TueJun0909:35:36.2263962026][security2:error][pid6270:tid6698][client34.79.5.197:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"pro2green.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"aifCSLmKuUWKB8gRtEtSEAAAANQ\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:30:07
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:30:01.087315 2026] [security2:error] [pid 27509:tid 27509] [client 34.79.5.197:38268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "britanniapilates.com.systemcapacityoptimization.com"] [uri "/.git/config"] [unique_id "aifA-ZaZ6zrNQc1_lwPt1gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:13:06
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:13:03.272464 2026] [security2:error] [pid 11180:tid 11180] [client 34.79.5.197:43916] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ancientleather.theflyingdutchman.us"] [uri "/.git/config"] [unique_id "aie8_6ksYwxKxrfu28NuCgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:52:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.5.197 (197.5.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:52:00.220193 2026] [security2:error] [pid 10933:tid 10933] [client 34.79.5.197:38078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calveley.com"] [uri "/.git/config"] [unique_id "aie4EGEOIofezcheoTUzRQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-06-09 05:37:39
(2 days ago)
Accessed trap at '/.git/config'
Web App Attack
๐จ๐ญ
GAS
2026-06-09 05:13:35
(2 days ago)
Bad Bot.
34.79.5.197 - - [09/Jun/2026:07:13:33 +0200] "GET /.git/config HTTP/1.1" 402 5817 "-" "iTun ...
show more
Bad Bot.
34.79.5.197 - - [09/Jun/2026:07:13:33 +0200] "GET /.git/config HTTP/1.1" 402 5817 "-" "iTunes/4.2 (Macintosh; U; PPC Mac OS X 10.2)" "REDACTED" ""
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 04:16:52
(2 days ago)
34.79.5.197 - - [09/Jun/2026:06:16:51 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (O ...
show more
34.79.5.197 - - [09/Jun/2026:06:16:51 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (OS/2; Warp 4.5; rv:10.0.12) Gecko/20130108 Firefox/10.0.12 SeaMonkey/2.7.2"
show less
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-09 03:10:31
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from BE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from BE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Linux; Android 9; JSN-AL00a Build/HONORJSN-AL00a; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/66.0.3359.126 MQQBrowser/6.2 TBS/044807 Mobile Safari/537.36 MMWEBID/1961 MicroMessenger/7.0.6.1460(0x27000634) Process/tools NetType/WIFI Language/zh_CN
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
Yachiyo Runami
2026-06-09 03:04:33
(2 days ago)
Web Scan (L7) | Paths: /.git/config | Codes: 444(1x) | UA: Mozilla/5.0 (Windows NT 6.1; WOW64) Apple ...
show more
Web Scan (L7) | Paths: /.git/config | Codes: 444(1x) | UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (K... | rDNS: 197.5.79.34.bc.googleusercontent.com | F2B/angie-honeypot@2026-06-09T03:04:32Z
show less
Port Scan
Hacking