๐ซ๐ท
dynamix
2026-09-05 23:08:52
(1 week ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-05 20:48:51
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
CollideTech
2026-09-05 13:34:53
(1 week ago)
found poking around where they should not be
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-04 17:30:04
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-09-04 08:42:02
(1 week ago)
categories: DDoS Attack
DDoS Attack
๐ท๐บ
DZBOT
2026-09-04 08:41:48
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-07-01 04:37:34
(2 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ณ๐ฑ
homeshowdomain.nl
2026-06-13 22:05:50
(3 months ago)
Auto-ban: >3000 req/min op 2026-06-13
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-13 16:42:49
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 12:42:45.448361 2026] [security2:error] [pid 11656:tid 11656] [client 35.241.108.38:57484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "members.oxfordgliding.com"] [uri "/.git/config"] [unique_id "ai2Ihb198Kju84PM9ld6dgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2026-06-13 16:00:10
(3 months ago)
Probing for .git:
35.241.108.38 - - [13/Jun/2026:18:00:08 +0200] "GET /.git/config HTTP/1.1" 403 146 ...
show more
Probing for .git:
35.241.108.38 - - [13/Jun/2026:18:00:08 +0200] "GET /.git/config HTTP/1.1" 403 146 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:47.0) Gecko/20100101 Firefox/47.0"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 15:34:51
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 11:34:48.544244 2026] [security2:error] [pid 9988:tid 9988] [client 35.241.108.38:57680] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bizzybeejunkremoval.soviaenterprises.com"] [uri "/.git/config"] [unique_id "ai14mAFG5I5rVx99Xp6rRQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-13 14:21:33
(3 months ago)
[SatJun1316:21:29.0592672026][security2:error][pid1228166:tid1228252][client35.241.108.38:0]ModSecur ...
show more
[SatJun1316:21:29.0592672026][security2:error][pid1228166:tid1228252][client35.241.108.38:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"mail.alessandrolucchini.ch\"][uri\"/.git/config\"][unique_id\"ai1naUSlaRReGi7xNxdDCwAAAJc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:10:53
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:10:47.969060 2026] [security2:error] [pid 12764:tid 12764] [client 35.241.108.38:55584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.al-anon-8ny.org"] [uri "/.git/config"] [unique_id "ai1Ix0ORTSdxAQbFxlaUnQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2026-06-13 12:10:47
(3 months ago)
Triggered Cloudflare WAF (firewallManaged) from HK.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from HK.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (X11; NetBSD) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/27.0.1453.116 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-13 10:19:27
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.108.38 (38.108.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 06:19:20.783672 2026] [security2:error] [pid 5444:tid 5444] [client 35.241.108.38:55840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "high5-vr.com"] [uri "/.git/config"] [unique_id "ai0uqFRae4Z7KUmNCIAFGwAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack