๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:02:31
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 04:34:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.130.51.247 (247.51.130.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.51.247 (247.51.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:34:06.555125 2026] [security2:error] [pid 14621:tid 14621] [client 34.130.51.247:50316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nunsunveiled.com"] [uri "/v1/.git/config"] [unique_id "ai-AvgP3Nqap7PAfpHJ6AwAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:32:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.130.51.247 (247.51.130.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.51.247 (247.51.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:32:41.669613 2026] [security2:error] [pid 8176:tid 8182] [client 34.130.51.247:48230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thesdgriffingroup.com"] [uri "/.git/config"] [unique_id "ai9yWbYVxKUs1KJAWrYrfQAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-06-15 00:42:55
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 34.130.51.247 (CA/Canada/247.51.130.34.bc.googl ...
show more
(mod_security) mod_security (id:949110) triggered by 34.130.51.247 (CA/Canada/247.51.130.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 00:11:14
(1 week ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐ฉ๐ช
SwinT
2026-06-15 00:00:11
(1 week ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐จ๐ญ
Origon
2026-06-14 23:47:10
(1 week ago)
http-sensitive-files - IP: 34.130.51.247 - time="2026-06-15T01:47:09+02:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 34.130.51.247 - time="2026-06-15T01:47:09+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.130.51.247 (CA/396982) : 4h ban on Ip 34.130.51.247" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:36:14
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.130.51.247 (247.51.130.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.51.247 (247.51.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:36:07.162114 2026] [security2:error] [pid 15612:tid 15612] [client 34.130.51.247:52474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garnetcreek.com"] [uri "/.git/config"] [unique_id "ai8659cHRaBfvOWFB6h3tAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-06-14 23:22:15
(1 week ago)
Multiple WAF Violations
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-06-14 22:44:46
(1 week ago)
Blocked by CSF 13 firewall - Rule: US/United States/247.51.130.34.bc.googleusercontent.com
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-06-14 22:05:12
(1 week ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-mnz6-5)
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-14 21:57:35
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
piticu iuli
2026-06-14 21:17:59
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 34.130.51.247 (CA/Canada/247.51.130.34. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.130.51.247 (CA/Canada/247.51.130.34.bc.googleusercontent.com)
show less
SQL Injection
๐ง๐พ
lns.bz
2026-06-14 16:06:21
(1 week ago)
Too many 404 requests [BY]
Web App Attack
Anonymous
2026-06-14 12:27:54
(1 week ago)
[Sun Jun 14 14:27:53.869381 2026] [:error] [pid 2501639:tid 2501639] [client 34.130.51.247:48094] Mo ...
show more
[Sun Jun 14 14:27:53.869381 2026] [:error] [pid 2501639:tid 2501639] [client 34.130.51.247:48094] ModSecurity: Warning. Matched "Operator `PmFromFile' with parameter `restricted-files.data' against variable `REQUEST_FILENAME' (Value: `/.git/config' ) [file "/usr/local/modsecurity-crs/rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "131"] [id "930130"] [rev ""] [msg "Restricted File Access Attempt"] [data "Matched Data: .git/ found within REQUEST_FILENAME: /.git/config"] [severity "2"] [ver "OWASP_CRS/4.28.0-dev"] [maturity "0"] [accuracy "0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/ATTACK-LFI"] [tag "capec/1000/255/153/126"] [uri "/.git/config"] [unique_id "178144007318.113374"] [ref "o1,5v4,12t:utf8toUnicode,t:urlDecodeUni,t:normalizePathWin"]
[Sun Jun 14 14:27:53.869380 2026] [:error] [pid 2262733:tid 2262733] [client 34.130.51.247:48108] Mo
...
show less
Web App Attack