๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:02:44
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐จ๐ญ
TheCoon
2026-06-09 19:30:01
(2 days ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 15:29:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:29:25.986204 2026] [security2:error] [pid 3450:tid 3450] [client 34.101.129.113:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.c2cservices.com"] [uri "/.git/config"] [unique_id "aigxVUU8OypZVjdr5H1DwgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-06-09 15:08:02
(2 days ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 14:55:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:55:17.349740 2026] [security2:error] [pid 11063:tid 11063] [client 34.101.129.113:43648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackstarmgmt.net"] [uri "/.git/config"] [unique_id "aigpVY39OvILGgBanTUtUgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-06-09 13:05:02
(2 days ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa01]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 13:01:14
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:01:07.863444 2026] [security2:error] [pid 15719:tid 15719] [client 34.101.129.113:42010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paulzaremba.com.growtowork.com"] [uri "/.git/config"] [unique_id "aigOkzd-MlXQKCMIukCx5QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-09 10:49:37
(2 days ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:07:07
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:07:02.519231 2026] [security2:error] [pid 12881:tid 12881] [client 34.101.129.113:39542] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.orders.pathpointsandbox.click"] [uri "/.git/config"] [unique_id "aifXtl46TRc7nGPAxWwTfQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:49:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:49:01.030749 2026] [security2:error] [pid 27157:tid 27157] [client 34.101.129.113:44160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "servecon.net"] [uri "/.git/config"] [unique_id "aifTfQ23TlrmIWFV3ZYxvwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:01:16
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:01:09.638443 2026] [security2:error] [pid 27752:tid 27765] [client 34.101.129.113:49206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tributetoalice.com"] [uri "/.git/config"] [unique_id "aifIRdalAGKMbIi-X41oSgAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:00:53
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:00:48.293913 2026] [security2:error] [pid 10822:tid 10822] [client 34.101.129.113:59064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "recetabook.com"] [uri "/.git/config"] [unique_id "aie6IJAjuMhmSWFa3BiGzQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:44:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:44:19.653833 2026] [security2:error] [pid 22102:tid 22102] [client 34.101.129.113:45020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mympizzas.com.mx"] [uri "/.git/config"] [unique_id "aieoM_LOA7ie2TuxUtGD8gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
HERA - Operations
2026-06-09 05:18:48
(2 days ago)
bau-arge - searching for vulnerable scripts: config 2026/06/09 07:18:48
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:04:59
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.129.113 (113.129.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:04:52.007008 2026] [security2:error] [pid 25041:tid 25041] [client 34.101.129.113:56776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gegraphics.biz"] [uri "/.git/config"] [unique_id "aiee9PAfkjBiFBIeR4cK3gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack