๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:01:38
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-13.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-13 14:16:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 10:16:19.798365 2026] [security2:error] [pid 11790:tid 11790] [client 34.101.182.122:55338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thinksite.com"] [uri "/.git/config"] [unique_id "ai1mMw2pJgxPB1uT0IRilAAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-13 13:29:49
(2 weeks ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 13:13:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 09:13:12.020544 2026] [security2:error] [pid 21726:tid 21726] [client 34.101.182.122:49438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnatuttle.us"] [uri "/.git/config"] [unique_id "ai1XaAGb4-kw-egEv3bdSwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:32:33
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:32:26.979342 2026] [security2:error] [pid 21992:tid 21992] [client 34.101.182.122:34760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.giganticmediallc.com"] [uri "/.git/config"] [unique_id "ai1N2gntjHwDnh9nn0dOrwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-13 10:27:20
(2 weeks ago)
[SatJun1312:27:15.8421812026][security2:error][pid962400:tid962538][client34.101.182.122:0]ModSecuri ...
show more
[SatJun1312:27:15.8421812026][security2:error][pid962400:tid962538][client34.101.182.122:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.albertiarnaldoluigi.ch.136-243-54-122.cpanel.site\"][uri\"/.git/config\"][unique_id\"ai0wg86CT45mjpCNgaGNrAAAARA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 09:49:52
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 05:49:49.095464 2026] [security2:error] [pid 29952:tid 29971] [client 34.101.182.122:59106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mcp.volcano-sa.com"] [uri "/.git/config"] [unique_id "ai0nvbFNOE3aijTJmKQjWgAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 08:45:58
(2 weeks ago)
(mod_security) mod_security (id:949110) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 04:45:52.097292 2026] [security2:error] [pid 945:tid 945] [client 34.101.182.122:51798] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "ritualistik.com.experimentalscene.com"] [uri "/.git/config"] [unique_id "ai0YwB-UL5-5K__SjJ-k2AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
beon
2026-06-13 08:11:56
(2 weeks ago)
[DateTime=>2026-06-13T08:11:56Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/.git/config] , [total_Hi ...
show more
[DateTime=>2026-06-13T08:11:56Z (UTC)] , [HoneyPot_Hit=>once] , [HoneyPot=>/.git/config] , [total_Hit=>once]
show less
Bad Web Bot
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-13 06:41:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:41:18.373826 2026] [security2:error] [pid 6170:tid 6170] [client 34.101.182.122:60512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title6.com"] [uri "/.git/config"] [unique_id "aiz7jlHGMmavRYJghgZGXAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 05:34:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 01:34:07.824266 2026] [security2:error] [pid 24141:tid 24141] [client 34.101.182.122:53142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mpaexchangeinc.com"] [uri "/.git/config"] [unique_id "aizrz2I_sPXJZaVwg9E0bAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-13 05:33:21
(2 weeks ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.101.182.122 (ID/Indonesia/122.18 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.101.182.122 (ID/Indonesia/122.182.101.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 04:39:30
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.182.122 (122.182.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 00:39:24.246029 2026] [security2:error] [pid 24687:tid 24687] [client 34.101.182.122:49322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cucciniello.com"] [uri "/.git/config"] [unique_id "aize_L0Ety_DtPNiBjo44wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-13 04:06:34
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-13 03:29:19
(2 weeks ago)
Try to access /.git/config
Web App Attack