๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:03:01
(7 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-13.
show less
Web App Attack
SSH
Hacking
๐ฎ๐ฉ
Burayot
2026-06-13 14:48:39
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.92.168.78 (HK/Hong Kong/78.168.9 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.92.168.78 (HK/Hong Kong/78.168.92.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-13 14:46:24
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.131 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
big-cloud.nl
2026-06-13 14:27:32
(1 day ago)
Try to access /.git/config
Web App Attack
๐ฉ๐ช
Kreapptivo
2026-06-13 13:08:51
(1 day ago)
[13/Jun/2026:15:08:48 +0200] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Macintosh; I ...
show more
[13/Jun/2026:15:08:48 +0200] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_5) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/51.0.2704.84 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-06-13 12:53:41
(1 day ago)
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure ...
show more
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:25:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:24:59.187132 2026] [security2:error] [pid 16357:tid 16357] [client 34.92.168.78:47416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "transitionclass.jam-pak.com"] [uri "/.git/config"] [unique_id "ai1MGxf8F1SZAqjlzmqe2QAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:50:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:50:13.567063 2026] [security2:error] [pid 7808:tid 7808] [client 34.92.168.78:46128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "njonker.com"] [uri "/.git/config"] [unique_id "ai1D9e0z_SUm7PjHs8O39AAAAH8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:26:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:25:56.233902 2026] [security2:error] [pid 2629:tid 2629] [client 34.92.168.78:51192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stagemadrid.com"] [uri "/.git/config"] [unique_id "ai0-RPCy-BVOrtPo7WXELgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 10:28:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 06:28:33.259832 2026] [security2:error] [pid 24310:tid 24310] [client 34.92.168.78:43364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.smog-check-coastal-san-diego.smogsandiego.com"] [uri "/.git/config"] [unique_id "ai0w0TZEHvz3m3s3a-o47wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 09:34:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 05:34:51.971581 2026] [security2:error] [pid 2805:tid 2805] [client 34.92.168.78:36628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.globaldentalservices.com"] [uri "/.git/config"] [unique_id "ai0kO6Rje8aI2-8Y2trk9gAAAFs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 07:19:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.168.78 (78.168.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 03:19:20.521463 2026] [security2:error] [pid 8410:tid 8410] [client 34.92.168.78:34920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.peterjohnsonpoet.peterjohnsonya.com"] [uri "/.git/config"] [unique_id "ai0EeJTaxz940vtLpPQRJwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-13 07:00:54
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฎ๐น
LTM
2026-06-13 06:20:01
(1 day ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-13 05:07:52
(2 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack