๐ณ๐ฑ
homeshowdomain.nl
2026-05-23 21:59:25
(1 month ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-22.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
4server
2026-05-22 17:53:33
(1 month ago)
[FriMay2219:53:29.2850552026][security2:error][pid3917530:tid3917654][client34.118.50.177:0]ModSecur ...
show more
[FriMay2219:53:29.2850552026][security2:error][pid3917530:tid3917654][client34.118.50.177:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"martinairsagl.ch.136-243-54-122.cpanel.site\"][uri\"/.git/config\"][unique_id\"ahCYGe01egzm4YG0MG1u8gAAAQ0\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
iNetWorker
2026-05-22 15:39:13
(1 month ago)
trolling for resource vulnerabilities
Web App Attack
๐ง๐ท
SOC PR
2026-05-22 13:52:25
(1 month ago)
IPS: Web Server Exposed Git Repository Information Disclosure.
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-22 13:51:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:51:09.436296 2026] [security2:error] [pid 5498:tid 5498] [client 34.118.50.177:34028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "concreting.net"] [uri "/.git/config"] [unique_id "ahBfTZIjsVU0oQqSGjy4KAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 13:33:19
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:33:12.155883 2026] [security2:error] [pid 23267:tid 23267] [client 34.118.50.177:58270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harvestfrc.com"] [uri "/.git/config"] [unique_id "ahBbGL07gWFQ4mygsP7KWAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 12:46:46
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:46:43.501579 2026] [security2:error] [pid 21282:tid 21282] [client 34.118.50.177:60612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "creertest.com"] [uri "/.git/config"] [unique_id "ahBQM4HlOv309q6yuEiMoQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 12:26:42
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:26:35.636168 2026] [security2:error] [pid 31475:tid 31475] [client 34.118.50.177:37850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clambakebeachhouse.com"] [uri "/.git/config"] [unique_id "ahBLe39r2vIF1cqCUh-BMQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-22 11:03:06
(1 month ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 10:50:19
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.50.177 (177.50.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 06:50:13.897246 2026] [security2:error] [pid 2885:tid 2885] [client 34.118.50.177:57100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.oiseauxsisters.com"] [uri "/.git/config"] [unique_id "ahA05XP1SoowtcyEKJk06wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack