π©πͺ
diosama
2026-09-05 20:01:38
(1 month ago)
CrowdSec blocked: crowdsecurity/appsec-vpatch
Brute-Force
Web App Attack
π¦πΊ
AWW-Admin
2026-09-05 15:18:15
(1 month ago)
(mod_security) mod_security triggered on hostname [redacted] 34.92.198.87 (HK/Hong Kong/87.198.92.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.92.198.87 (HK/Hong Kong/87.198.92.34.bc.googleusercontent.com)
show less
SQL Injection
πΊπΈ
Victor LΓ³pez
2026-09-05 14:53:29
(1 month ago)
videoprenatal.com 34.92.198.87 - - [05/Sep/2026:09:53:23 -0500] "GET /.git/config HTTP/2.0" 404 2070 ...
show more
videoprenatal.com 34.92.198.87 - - [05/Sep/2026:09:53:23 -0500] "GET /.git/config HTTP/2.0" 404 20705 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" -
videoprenatal.com 34.92.198.87 - - [05/Sep/2026:09:53:26 -0500] "GET /.env HTTP/2.0" 404 20698 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" -
videoprenatal.com 34.92.198.87 - - [05/Sep/2026:09:53:28 -0500] "GET /.env.local HTTP/2.0" 404 20701 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" -
...
show less
Hacking
Web App Attack
π«π·
masterguru
2026-09-05 14:51:39
(1 month ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
Anonymous
2026-09-05 14:05:25
(1 month ago)
34.92.198.87 - - [05/Sep/2026:16:05:19 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 ( ...
show more
34.92.198.87 - - [05/Sep/2026:16:05:19 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
πΈπͺ
vaia.cloud
2026-09-05 13:35:15
(1 month ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
π¦πΊ
rubixstudios
2026-09-05 13:30:02
(1 month ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-05 13:14:50
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 09:14:45.683477 2026] [security2:error] [pid 18230:tid 18230] [client 34.92.198.87:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vidacellenlaweb.com"] [uri "/.git/config"] [unique_id "apwVxffBqwubRSwuVCp4AwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-05 12:53:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 08:53:11.006392 2026] [security2:error] [pid 28749:tid 28749] [client 34.92.198.87:47678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "victorvictorinc.com.victorvictor.biz"] [uri "/.git/config"] [unique_id "apwQt6zChHFBVuJkut6xOQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Lee Daniel
2026-09-05 10:50:11
(1 month ago)
34.92.198.87 - - [05/Sep/2026:06:50:10 -0400] "GET /.env HTTP/1.1" 403 6284 "-" "Mozilla/5.0 (X11; L ...
show more
34.92.198.87 - - [05/Sep/2026:06:50:10 -0400] "GET /.env HTTP/1.1" 403 6284 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
usc-IPDB
2026-09-05 10:04:34
(1 month ago)
34.92.198.87 - - [05/Sep/2026:12:04:33 +0200] "GET /phpinfo.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 ( ...
show more
34.92.198.87 - - [05/Sep/2026:12:04:33 +0200] "GET /phpinfo.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.198.87 - - [05/Sep/2026:12:04:33 +0200] "GET /info.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.92.198.87 - - [05/Sep/2026:12:04:33 +0200] "GET /php.php HTTP/1.1" 404 181 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-09-05 08:49:52
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 04:49:47.634728 2026] [security2:error] [pid 22543:tid 22543] [client 34.92.198.87:59476] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "usbea.com"] [uri "/.git/config"] [unique_id "apvXqzr8ZshkVFG-dhsQIQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
mrcrassi
2026-09-05 08:30:24
(1 month ago)
Triggered Cloudflare WAF (firewallManaged) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST met ...
show more
Triggered Cloudflare WAF (firewallManaged) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-09-05 05:41:27
(1 month ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-05 05:05:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.92.198.87 (87.198.92.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 01:04:53.480252 2026] [security2:error] [pid 11902:tid 11902] [client 34.92.198.87:58302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "usagreenrecycling.com"] [uri "/.git/config"] [unique_id "apui9XCptc6fXcMCLzFZDwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack