๐บ๐ธ
TPI-Abuse
2026-07-27 14:30:35
(47 minutes ago)
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 10:30:28.853856 2026] [security2:error] [pid 146077:tid 146077] [client 52.37.250.3:45358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dodojuice.com"] [uri "/.git/config"] [unique_id "amdrhB4J4lFAOXRoThTNEQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 12:30:37
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:30:31.486246 2026] [security2:error] [pid 3797957:tid 3797957] [client 52.37.250.3:58330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "documents.progressivefileshare.org"] [uri "/.git/config"] [unique_id "amdPZ1ZbbSyYAT1LHoPlygAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-07-27 12:24:47
(2 hours ago)
Aggressive web search of vulnerable pages: / /.env /.env.local /app/.env /apps/.env ...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 10:35:20
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 06:35:14.855614 2026] [security2:error] [pid 1393072:tid 1393072] [client 52.37.250.3:55200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doctorspainmanagement.com"] [uri "/.git/config"] [unique_id "amc0YiNN24biUuXc1BsE4AAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 09:13:42
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 05:13:36.654460 2026] [security2:error] [pid 9198:tid 9198] [client 52.37.250.3:55196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doctoredwinalvarez.com"] [uri "/.git/config"] [unique_id "amchQI5tz1SgZUQ8Gz00UAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 08:55:33
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 52.37.250.3 (ec2-52-37-250-3.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 04:55:26.572710 2026] [security2:error] [pid 360058:tid 360058] [client 52.37.250.3:36018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doctorc.net"] [uri "/.git/config"] [unique_id "amcc_pz51hOnd2dE3aIj_AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-27 08:39:37
(6 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ซ๐ฎ
as211431.net
2026-07-27 06:22:17
(8 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /htdocs/phpinfo.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ง๐ท
Halux
2026-07-24 08:07:02
(3 days ago)
52.37.250.3 Probing protected path or service
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-24 04:02:31
(3 days ago)
Excessive 404/403 errors
Brute-Force
๐ฎ๐น
VHosting
2026-07-24 03:40:05
(3 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฌ๐ง
essinghigh
2024-11-07 08:22:09
(1 year ago)
1730967729 # Service_probe # SIGNATURE_SEND # source_ip:52.37.250.3 # dst_port:9151
...
Port Scan