🇳🇱
maxxsense
2026-08-24 15:49:42
(6 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.80.167.89 (TW/Taiwan/89.167.80.34.bc ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.80.167.89 (TW/Taiwan/89.167.80.34.bc.googleusercontent.com)
show less
SQL Injection
🇦🇪
CG
2026-08-24 15:43:07
(6 days ago)
Web application attack, Automated scan
Web App Attack
Hacking
SQL Injection
🇫🇷
ELYAZ
2026-08-24 15:31:53
(6 days ago)
(y3) Failed access -byebye- from 34.80.167.89 (TW/Taiwan/89.167.80.34.bc.googleusercontent.com): (C ...
show more
(y3) Failed access -byebye- from 34.80.167.89 (TW/Taiwan/89.167.80.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
🇵🇱
Budyn
2026-08-24 15:29:01
(6 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: budyn.wtf | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇩🇪
Blexyel
2026-08-24 15:28:14
(6 days ago)
34.80.167.89 - - [24/Aug/2026:17:28:14 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 ( ...
show more
34.80.167.89 - - [24/Aug/2026:17:28:14 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
🇺🇸
CBJ
2026-08-24 15:28:02
(6 days ago)
fail2ban: apache-filepath-recon
...
Web App Attack
🇿🇦
conure.sh
2026-08-24 15:24:13
(6 days ago)
csagent: score 15.4: secrets grab x2, 404 noise floor x2; 2 domain(s) in 2m0s
Web App Attack
🇬🇧
consul.to
2026-08-24 15:23:57
(6 days ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 15:21:34
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:21:31.618182 2026] [security2:error] [pid 4112656:tid 4112763] [client 34.80.167.89:33666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bacchus.productions"] [uri "/.git/config"] [unique_id "aoxhe7pbcnNyy8Byb3SUFwAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
pinguin
2026-08-24 15:15:46
(6 days ago)
Triggered Cloudflare WAF (firewallManaged) from TW.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from TW.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-24 15:00:07
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:00:01.691794 2026] [security2:error] [pid 5400:tid 5400] [client 34.80.167.89:19140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theseventhcongregationofladderdayvixens.org"] [uri "/.git/config"] [unique_id "aoxccVFmG5rDpn-zpm5iyAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 14:05:23
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 10:05:19.401620 2026] [security2:error] [pid 9651:tid 9651] [client 34.80.167.89:31786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "psychtraining.org"] [uri "/.git/config"] [unique_id "aoxPn-NcCI17E3kotIQU0wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 13:45:21
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.167.89 (89.167.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:45:16.225662 2026] [security2:error] [pid 23406:tid 23406] [client 34.80.167.89:65000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrpinman.org"] [uri "/.git/config"] [unique_id "aoxK7GeB9qt2VLF7zmiYRQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack