๐ณ๐ฑ
homeshowdomain.nl
2026-07-27 22:00:22
(1 day ago)
Auto-ban: >3000 req/min op 2026-07-27
Web App Attack
SSH
Hacking
๐บ๐ธ
alecj.com
2026-07-27 20:23:39
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/appsec-vpatch
Web App Attack
๐ซ๐ท
Octopuce
2026-07-27 14:51:55
(1 day ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
Anonymous
2026-07-27 14:37:51
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 63.32.47.93 (IE/Ireland/ec2-63-32-47-93 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 63.32.47.93 (IE/Ireland/ec2-63-32-47-93.eu-west-1.compute.amazonaws.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-07-27 12:13:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:13:22.916129 2026] [security2:error] [pid 1116628:tid 1116628] [client 63.32.47.93:41328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "progresssetfree.com.stevescottcoaching.com"] [uri "/.git/config"] [unique_id "amdLYsC8afIwBhpOXMPw2gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 11:34:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 07:34:05.976756 2026] [security2:error] [pid 3749146:tid 3749146] [client 63.32.47.93:34918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "progressivefileshare.org"] [uri "/.git/config"] [unique_id "amdCLcvDeP5OdSnDyz251QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-27 08:32:10
(1 day ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 07:06:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 03:05:59.877831 2026] [security2:error] [pid 1548388:tid 1548419] [client 63.32.47.93:41736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "progenicyte.net"] [uri "/.git/config"] [unique_id "amcDV7wTQAf3T_SDG8pexAAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-27 05:55:48
(1 day ago)
63.32.47.93 - - [27/Jul/2026:08:55:45 +0300] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 (X ...
show more
63.32.47.93 - - [27/Jul/2026:08:55:45 +0300] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
63.32.47.93 - - [27/Jul/2026:08:55:47 +0300] "GET /.env HTTP/1.1" 404 705 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ธ๐ช
vaia.cloud
2026-07-27 05:10:02
(1 day ago)
crowdsecurity/http-crawl-non_statics
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-26 21:59:59
(2 days ago)
Auto-ban: 271 malicious requests on 2026-07-25 (e.g., env/backup probes, brute-force, or error burst ...
show more
Auto-ban: 271 malicious requests on 2026-07-25 (e.g., env/backup probes, brute-force, or error bursts).
show less
Web App Attack
SSH
Hacking
๐ซ๐ฎ
as211431.net
2026-07-26 04:55:56
(2 days ago)
Triggered Cloudflare WAF (firewallCustom) from IE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from IE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /php.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-26 04:20:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 63.32.47.93 (ec2-63-32-47-93.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 00:20:51.792426 2026] [security2:error] [pid 2229255:tid 2229255] [client 63.32.47.93:60982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qbasys.com"] [uri "/.git/config"] [unique_id "amWLI4rCa1ClWdYcpE0Q6wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-26 02:32:49
(2 days ago)
Excessive 404/403 errors
Brute-Force