๐ณ๐ฑ
homeshowdomain.nl
2026-09-17 22:00:46
(9 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-16.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
Site.eu
2026-09-16 02:39:58
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Alt255
2026-09-16 01:11:56
(2 days ago)
[cb-16al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-16al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.13.194.71 - - [16/Sep/2026:03:11:40 +0200] "GET /.git/config HTTP/1.1" 404 1350 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 01:01:05
(2 days ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-09-15 18:47:50
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 18:14:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.13.194.71 (71.194.13.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.13.194.71 (71.194.13.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:14:15.919797 2026] [security2:error] [pid 18017:tid 18017] [client 34.13.194.71:60132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "realestatechristmascard.com"] [uri "/.git/config"] [unique_id "aqmK90rgrBHpXHLtClpPNwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-09-15 17:31:21
(2 days ago)
[15/Sep/2026:13:31:20.478889 --0400] aqmA6NP-pBl5Y6PeBDDH6QAAANM 34.13.194.71 49472 205.233.18.17 70 ...
show more
[15/Sep/2026:13:31:20.478889 --0400] aqmA6NP-pBl5Y6PeBDDH6QAAANM 34.13.194.71 49472 205.233.18.17 7081
[15/Sep/2026:13:31:20.778312 --0400] aqmA6NP-pBl5Y6PeBDDH6gAAANA 34.13.194.71 49492 205.233.18.17 7081
[15/Sep/2026:13:31:20.906825 --0400] aqmA6DmHQ8ckPzIN6CEjNgAAARA 34.13.194.71 49504 205.233.18.17 7081
[15/Sep/2026:13:31:21.034562 --0400] aqmA6TmHQ8ckPzIN6CEjNwAAARE 34.13.194.71 49512 205.233.18.17 7081
[15/Sep/2026:13:31:21.292980 --0400] aqmA6dP-pBl5Y6PeBDDH6wAAAMI 34.13.194.71 49522 205.233.18.17 7081
...
show less
Hacking
๐ณ๐ฟ
Tripwire
2026-09-15 12:06:08
(2 days ago)
Scanning for exploits - /.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:37:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.13.194.71 (71.194.13.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.13.194.71 (71.194.13.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:37:13.902233 2026] [security2:error] [pid 31346:tid 31346] [client 34.13.194.71:55954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "realdoctorstories.com"] [uri "/.git/config"] [unique_id "aqkt6ZaJIqH48H7JhYgH_AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:12:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.13.194.71 (71.194.13.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.13.194.71 (71.194.13.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:12:06.208586 2026] [security2:error] [pid 12526:tid 12526] [client 34.13.194.71:32950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "realdesigninterior.com"] [uri "/.git/config"] [unique_id "aqkoBmEbAZo0CnM1YqXjvwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 09:38:20
(2 days ago)
Multiple WAF Violations
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-15 09:10:04
(2 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ฉ๐ช
marten_o
2026-09-15 08:56:00
(2 days ago)
34.13.194.71 - - [15/Sep/2026:10:55:59 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 574 "-" "Mozilla/5 ...
show more
34.13.194.71 - - [15/Sep/2026:10:55:59 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 574 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 1007 6143
...
show less
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 06:20:03
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฉ๐ช
tsZero
2026-09-15 04:16:59
(3 days ago)
Scan example: path=/.git/config status=403
Hacking