๐ฉ๐ช
gadix
2026-10-08 19:47:32
(2 hours ago)
[08/Oct/2026:21:47:31.177686 +0200] asfzU1T9EYf931HzzC9cgAAAAAE 35.214.101.99 55646 127.0.0.1 7081
[ ...
show more
[08/Oct/2026:21:47:31.177686 +0200] asfzU1T9EYf931HzzC9cgAAAAAE 35.214.101.99 55646 127.0.0.1 7081
[08/Oct/2026:21:47:31.968214 +0200] asfzU13hxvFiNC5pizK1YwAAAAw 35.214.101.99 55650 127.0.0.1 7081
[08/Oct/2026:21:47:32.021047 +0200] asfzVIt3jpG65Hyv0BFP4QAAAAU 35.214.101.99 55656 127.0.0.1 7081
...
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-08 18:19:18
(3 hours ago)
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.214.101.99 - - [08/Oct/2026:20:18:59 +0200] "GET /.git/config HTTP/1.1" 404 2105 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-10-08 15:00:08
(6 hours ago)
Web App Attack
๐ซ๐ฎ
as211431.net
2026-10-08 13:28:42
(8 hours ago)
Triggered Cloudflare WAF (ratelimit) from GB.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
En ...
show more
Triggered Cloudflare WAF (ratelimit) from GB.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /firebase-adminsdk.json
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-08 12:33:31
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.214.101.99 (99.101.214.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.214.101.99 (99.101.214.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 08:33:23.805446 2026] [security2:error] [pid 24112:tid 24112] [client 35.214.101.99:51764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "protucaribe.com"] [uri "/.git/config"] [unique_id "aseNk7njTnr7xoWZ_Gez9QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 10:38:39
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.214.101.99 (99.101.214.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.214.101.99 (99.101.214.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 06:38:35.730141 2026] [security2:error] [pid 31080:tid 31080] [client 35.214.101.99:45316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "protonmultimedia.com"] [uri "/.git/config"] [unique_id "asdyq934SoRvG6x8_1UUwAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-08 07:43:07
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-08 06:28:01
(15 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-08 05:18:57
(16 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
big-cloud.nl
2026-10-08 05:14:38
(16 hours ago)
Try to access /.git/config
Web App Attack
๐ซ๐ท
dynamix
2026-10-08 05:12:25
(16 hours ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
MatStef132
2026-10-08 05:11:18
(16 hours ago)
MatShield L7: blocked on protection-core-01-panel.mathost.eu (secret-path-probe)
DDoS Attack
๐ฉ๐ช
DocNetzwerk
2026-10-08 04:33:08
(17 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.214.101.99 (GB/United Kingdom/99.101 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.214.101.99 (GB/United Kingdom/99.101.214.35.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
gadix
2026-10-08 03:41:39
(18 hours ago)
[08/Oct/2026:05:41:34.303726 +0200] ascQ7jEDg6hqG41lGPUkcAAAABE 35.214.101.99 38236 127.0.0.1 7081
[ ...
show more
[08/Oct/2026:05:41:34.303726 +0200] ascQ7jEDg6hqG41lGPUkcAAAABE 35.214.101.99 38236 127.0.0.1 7081
[08/Oct/2026:05:41:34.397955 +0200] ascQ7jEDg6hqG41lGPUkcgAAAAU 35.214.101.99 38260 127.0.0.1 7081
[0
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 02:39:48
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.214.101.99 (99.101.214.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.214.101.99 (99.101.214.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 22:39:42.263124 2026] [security2:error] [pid 24841:tid 24841] [client 35.214.101.99:34000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "prosucomexico.com"] [uri "/.git/config"] [unique_id "ascCbqAvc8o3Lca0zvaClwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack