๐ณ๐ฑ
homeshowdomain.nl
2026-06-16 22:00:56
(17 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-15.
show less
Web App Attack
SSH
Hacking
๐จ๐ญ
4server
2026-06-15 09:35:30
(2 days ago)
[MonJun1511:35:24.9080472026][security2:error][pid2544821:tid2545081][client34.100.161.196:0]ModSecu ...
show more
[MonJun1511:35:24.9080472026][security2:error][pid2544821:tid2545081][client34.100.161.196:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"dc-graphicart.com\"][uri\"/backend/.git/config\"][unique_id\"ai_HXI_aFlb6RqOXG5hMiQAAAM4\"]
show less
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 09:25:14
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:08:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:08:01.671219 2026] [security2:error] [pid 28619:tid 28619] [client 34.100.161.196:38174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "writeitright.biz"] [uri "/static/.git/config"] [unique_id "ai-y4dZkTihvJjv-m3ObdwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
LSPCCU
2026-06-15 07:34:08
(2 days ago)
TSEC Honeypot Network report. Threat score: 99/100. Categories: Hacking, Brute-Force, Web App Attack ...
show more
TSEC Honeypot Network report. Threat score: 99/100. Categories: Hacking, Brute-Force, Web App Attack, SSH. Honeypot: ssh-telnet, cowrie. Context: Attacker IP 34.
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ซ๐ท
masterguru
2026-06-15 07:23:13
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:22:24
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:22:18.962008 2026] [security2:error] [pid 21125:tid 21125] [client 34.100.161.196:34664] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "luckypupdesigns.com"] [uri "/portal/.git/config"] [unique_id "ai-oKqvBm860qz5gizj-OwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
antlac1
2026-06-15 05:39:29
(2 days ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 04:56:10
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
debestelapp
2026-06-15 04:25:11
(2 days ago)
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-15 04:19:51
(2 days ago)
Try to access /.git/config
Web App Attack
Anonymous
2026-06-15 04:19:18
(2 days ago)
34.100.161.196 - - [15/Jun/2026:04:19:17 +0000] "GET /laravel/.git/config HTTP/1.1" 404 2814 "-" "Mo ...
show more
34.100.161.196 - - [15/Jun/2026:04:19:17 +0000] "GET /laravel/.git/config HTTP/1.1" 404 2814 "-" "Mozilla/5.0 (Linux; Android 9; Redmi Note 7 Pro Build/PKQ1.181203.001; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/66.0.3359.126 MQQBrowser/6.2 TBS/044807 Mobile Safari/537.36 MMWEBID/7272 MicroMessenger/7.0.6.1460(0x27000634) Process/tools NetType/WIFI Language/zh_CN"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:36:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:35:57.713163 2026] [security2:error] [pid 6034:tid 6034] [client 34.100.161.196:48986] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.agapeaccounting.com.agapeaccountingllc.com"] [uri "/.git/config"] [unique_id "ai9zHeRvE5j-V9vSTBqvGgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:10:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:10:49.714008 2026] [security2:error] [pid 23647:tid 23647] [client 34.100.161.196:36378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fingercult.com"] [uri "/api/.git/config"] [unique_id "ai9tOWmciAPbsC7nrxe4kAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:49:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.100.161.196 (196.161.100.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:49:33.763390 2026] [security2:error] [pid 30687:tid 30687] [client 34.100.161.196:37082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atlantahome.rehab"] [uri "/htdocs/.git/config"] [unique_id "ai9oPW1We9P9iXlwk_PFPQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack