๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 21:59:51
(6 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 13:29:57
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:29:50.749154 2026] [security2:error] [pid 888:tid 888] [client 34.128.68.154:53032] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "leadek.com"] [uri "/.git/config"] [unique_id "aigVTlt01iNoUiBE_6IA2AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-09 13:01:23
(6 days ago)
Try to access /.git/config
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 11:05:46
(6 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.128.68.154 (ID/Indonesia/154.68.12 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.128.68.154 (ID/Indonesia/154.68.128.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 10:14:35
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:14:29.113174 2026] [security2:error] [pid 27725:tid 27753] [client 34.128.68.154:51130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.2020comeback.aafm.us"] [uri "/.git/config"] [unique_id "aifnhay7fQGg5YwXprMxbwAAAVg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:41:36
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:41:29.548430 2026] [security2:error] [pid 9060:tid 9060] [client 34.128.68.154:55510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hien.sonnyvo.com"] [uri "/.git/config"] [unique_id "aiffyfKDqg0EYRP2yZJjIgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:05:21
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:05:17.119665 2026] [security2:error] [pid 27649:tid 27649] [client 34.128.68.154:42348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kathleenhazlett.seizetheseason.com"] [uri "/.git/config"] [unique_id "aifJPWMUR0UZqeESxFGoCwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:20:45
(6 days ago)
(mod_security) mod_security (id:949110) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:20:38.937585 2026] [security2:error] [pid 25617:tid 25617] [client 34.128.68.154:49384] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "letahitibookings.com"] [uri "/.git/config"] [unique_id "aie-xuBhbFYPQwVfL3LQGQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
ScamAware
2026-06-09 06:34:26
(6 days ago)
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensiti ...
show more
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensitive files, source control, config, and backups). Hits from same IP in last 60 minutes: 1. Unique request paths counted internally: 1. Cloudflare action: block. Cloudflare source: firewallCustom.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:15:24
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:15:18.241428 2026] [security2:error] [pid 15287:tid 15287] [client 34.128.68.154:44200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kristywernerauthor.com"] [uri "/.git/config"] [unique_id "aievdmYrBaUSlGB41i1qBwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:43:56
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:43:49.666069 2026] [security2:error] [pid 27913:tid 27913] [client 34.128.68.154:47204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "quintanotariaconcepcion.cl"] [uri "/.git/config"] [unique_id "aieoFZNbSBSE37gK-pv0egAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:40:37
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:40:30.278469 2026] [security2:error] [pid 28751:tid 28751] [client 34.128.68.154:46482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caddydad.com"] [uri "/.git/config"] [unique_id "aieZPkfGgdnBVaHVpk7DrgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:33:32
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:33:26.146544 2026] [security2:error] [pid 21098:tid 21098] [client 34.128.68.154:51172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.poolservices.jhonbens.com"] [uri "/.git/config"] [unique_id "aid7dqUdr3ApnDdEeoSfAQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 00:31:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.68.154 (154.68.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:31:48.388644 2026] [security2:error] [pid 16034:tid 16034] [client 34.128.68.154:35654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3beeze.com"] [uri "/.git/config"] [unique_id "aide9Ay5KMaerj9eic2WBAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2026-06-08 19:15:26
(1 week ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack