๐บ๐ธ
TPI-Abuse
2026-06-13 17:07:17
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 13:07:13.934244 2026] [security2:error] [pid 27117:tid 27117] [client 34.96.132.153:48604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.webseographics.smogsandiego.com"] [uri "/.git/config"] [unique_id "ai2OQRh7vBd72ppcYhTO3gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 14:42:43
(5 days ago)
(mod_security) mod_security (id:949110) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 10:42:37.272306 2026] [security2:error] [pid 5797:tid 5797] [client 34.96.132.153:39724] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.creators.freedrm.org"] [uri "/.git/config"] [unique_id "ai1sXSguEp42fhJVdgTnSgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
JustMeHere
2026-06-13 14:23:00
(5 days ago)
[Sat Jun 13 10:22:55.947488 2026] [security2:error] [pid 94665:tid 94713] [client 34.96.132.153:3970 ...
show more
[Sat Jun 13 10:22:55.947488 2026] [security2:error] [pid 94665:tid 94713] [client 34.96.132.153:39708] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "learn.kiwiconsulting.yorknation.com"] [uri "/.git/config"] [unique_id "ai1nv7rbQiJj5wDFBc9fCgAAARQ"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:23:42
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:23:39.594315 2026] [security2:error] [pid 21853:tid 21853] [client 34.96.132.153:52168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hi-niemczuras.net"] [uri "/.git/config"] [unique_id "ai1Ly2QmVTz5HakW7Llq4wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-06-13 10:43:47
(5 days ago)
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) SFive/64.0 Chrome/64.0.3282.204 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-13 10:23:31
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 06:23:28.237980 2026] [security2:error] [pid 24964:tid 24975] [client 34.96.132.153:44610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hongkongstockexchange.org.aafm.us"] [uri "/.git/config"] [unique_id "ai0voA9yHcOL1BM1VqbvQwAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
6kilowatti
2026-06-13 10:18:07
(5 days ago)
34.96.132.153 - - [13/Jun/2026:13:18:06 +0300] "GET /.git/config HTTP/1.1" 404 60 "-" "Mozilla/5.0 ( ...
show more
34.96.132.153 - - [13/Jun/2026:13:18:06 +0300] "GET /.git/config HTTP/1.1" 404 60 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/33.0.1750.154 Safari/537.36 OPR/20.0.1387.91"
...
show less
Web App Attack
๐ณ๐ด
jad-abuse
2026-06-13 09:24:03
(5 days ago)
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure ...
show more
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 09:23:02
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 05:22:54.061466 2026] [security2:error] [pid 8787:tid 8787] [client 34.96.132.153:50708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "awl-v.com"] [uri "/.git/config"] [unique_id "ai0hbqIXL8bYjdiitFnXMQAAAGs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
ddw
2026-06-13 06:22:13
(5 days ago)
Access Violation Attempts - Multiple 403 Forbidden responses.
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-06-13 06:15:02
(5 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 06:08:34
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:08:27.226717 2026] [security2:error] [pid 29952:tid 29978] [client 34.96.132.153:40964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lynchburg.windowtailors.com"] [uri "/.git/config"] [unique_id "aizz27FNOE3aijTJmKQMWgAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 05:12:36
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 01:12:30.415692 2026] [security2:error] [pid 17057:tid 17057] [client 34.96.132.153:50880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "takeapawsboston.com"] [uri "/.git/config"] [unique_id "aizmvgOSwBNLX9vZLQPJLgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-13 05:06:12
(5 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 04:54:38
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.132.153 (153.132.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 00:54:32.735933 2026] [security2:error] [pid 16828:tid 16828] [client 34.96.132.153:54650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bilimkurgumanyagi.com"] [uri "/.git/config"] [unique_id "aiziiJi027sT64C72ktLAAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack