๐ท๐ด
iulianh
2026-09-16 13:25:17
(58 minutes ago)
80,443
Brute-Force
SSH
Anonymous
2026-09-16 13:03:12
(1 hour ago)
Bot / seems abusive / Apache connections: 38
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 12:57:59
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.197.77.30 (30.77.197.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.77.30 (30.77.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:57:52.770913 2026] [security2:error] [pid 9213:tid 9213] [client 35.197.77.30:50912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.computer-advisors.hisfavorite.net"] [uri "/.git/config"] [unique_id "aqqSUC_Q35A2mJMzzKr3ZgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 11:56:10
(2 hours ago)
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.197.77.30 - - [16/Sep/2026:13:56:05 +0200] "GET /.git/config HTTP/1.1" 301 635 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-16 11:10:28
(3 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-16 11:10 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 10:50:28
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.197.77.30 (30.77.197.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.77.30 (30.77.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 06:50:25.431189 2026] [security2:error] [pid 7720:tid 7720] [client 35.197.77.30:44430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.createbelieve.mroxygen.org"] [uri "/.git/config"] [unique_id "aqp0cSXdF5JTRoEmE9syuwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 10:14:58
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.197.77.30 (30.77.197.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.77.30 (30.77.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 06:14:53.803806 2026] [security2:error] [pid 32752:tid 32752] [client 35.197.77.30:59954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.crearcuestionarios.com.creartest.com"] [uri "/.git/config"] [unique_id "aqpsHRZm8u4nWpiV7_mZ0wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 09:19:22
(5 hours ago)
Banned by Fail2Ban on server
Web App Attack
๐ฉ๐ช
Trueforce Threat Report
2026-09-16 06:35:28
(7 hours ago)
Automated report, trolling for resource vulnerabilities
Bad Web Bot
Web App Attack
๐ซ๐ท
mrcrassi
2026-09-16 05:38:21
(8 hours ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST met ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-09-16 05:29:39
(8 hours ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Alt255
2026-09-16 02:55:15
(11 hours ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35. ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35.197.77.30 - - \[16/Sep/2026:04:55:13 +0200\] "GET /.git/config HTTP/1.1" 301 670 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-16 00:05:31
(14 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐ง๐ท
dominioz
2026-09-15 23:56:35
(14 hours ago)
2026-09-15 23:55:26 GET /.env.local - - 35.197.77.30 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X ...
show more
2026-09-15 23:55:26 GET /.env.local - - 35.197.77.30 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 611
2026-09-15 23:55:27 GET /.env.production - - 35.197.77.30 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 621
2026-09-15 23:55:28 GET /.env.staging - - 35.197.77.30 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 615
2026-09-15 23:55:28 GET /.env.development - - 35.197.77.30 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 623
2026-09-15 23:55:30 GET /.env.test - - 35.197.77.30 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 609
2026-09-15 23:55:30 GET /.env.remote -
...
show less
Web App Attack
๐ซ๐ท
solution.it
2026-09-15 23:29:05
(14 hours ago)
[Wed Sep 16 01:29:04.382274 2026] [php7:error] [pid 1759279:tid 1759279] [client 35.197.77.30:59800] ...
show more
[Wed Sep 16 01:29:04.382274 2026] [php7:error] [pid 1759279:tid 1759279] [client 35.197.77.30:59800] script '/var/www/html/www.craccaaltesoro.it/phpinfo.php' not found or unable to stat
show less
Web App Attack