๐ณ๐ฑ
homeshowdomain.nl
2026-06-10 22:00:29
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-09.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
4server
2026-06-09 13:50:00
(1 week ago)
[TueJun0915:49:57.2568072026][security2:error][pid3008280:tid3008303][client34.101.236.217:0]ModSecu ...
show more
[TueJun0915:49:57.2568072026][security2:error][pid3008280:tid3008303][client34.101.236.217:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"acquaallaspina.ch.bluwater.ch\"][uri\"/.git/config\"][unique_id\"aigaBaR-WiY3Hb_RnczRjQAAAAs\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-09 13:12:00
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-06-09 12:48:06
(1 week ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:40:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:40:33.350434 2026] [security2:error] [pid 32279:tid 32279] [client 34.101.236.217:42142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "edlee.biz"] [uri "/.git/config"] [unique_id "aiftocSbIoGCzgKhVCMywwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:02:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:02:50.275815 2026] [security2:error] [pid 12965:tid 12965] [client 34.101.236.217:37572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sharc.d-sinema.com"] [uri "/.git/config"] [unique_id "aifkyui_5_F1mm6GEdHyTwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:56:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:56:15.538409 2026] [security2:error] [pid 23843:tid 23843] [client 34.101.236.217:44164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stage.cyberclay.net"] [uri "/.git/config"] [unique_id "aifVL-RvAn1Zaxua_ESZfQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:02:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:02:32.279502 2026] [security2:error] [pid 31491:tid 31496] [client 34.101.236.217:59842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "williampower.com"] [uri "/.git/config"] [unique_id "aifImHBOsaI8Ya2Uo6Y12gAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:46:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:45:58.022645 2026] [security2:error] [pid 23987:tid 23987] [client 34.101.236.217:45154] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "researchdesk.jmnr.net"] [uri "/.git/config"] [unique_id "aifEtqbf8Ln7jEslGmsX9wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:04:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.236.217 (217.236.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:04:15.308651 2026] [security2:error] [pid 5813:tid 5813] [client 34.101.236.217:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nyemdr-online.com"] [uri "/.git/config"] [unique_id "aie67zQO2G0NNlY2hAUm9gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 05:59:35
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.101.236.217 (ID/Indonesia/217.236. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.101.236.217 (ID/Indonesia/217.236.101.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฌ๐ง
Axel
2026-06-09 04:46:02
(1 week ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
big-cloud.nl
2026-06-09 04:45:38
(1 week ago)
Try to access /.git/config
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-09 04:07:53
(1 week ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ซ๐ท
Nexia
2026-06-09 02:36:22
(1 week ago)
[SENTINEL-HQ] Sentinel detected Critical Trap on /.git/config
Web App Attack