๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:01:20
(41 minutes ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ง๐ช
cmbplf
2026-06-15 17:06:29
(5 hours ago)
7.908 requests from abuseipdb.com blacklisted IP (1yr2mos3w)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 09:15:38
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:15:33.808888 2026] [security2:error] [pid 23305:tid 23342] [client 34.131.178.216:48902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.booking.heworeblack.com"] [uri "/backend/.git/config"] [unique_id "ai_CtYIo1sDT-iyrFmCGUwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:10:31
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:10:23.322418 2026] [security2:error] [pid 2695:tid 2695] [client 34.131.178.216:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nyemdr.org"] [uri "/app/.git/config"] [unique_id "ai-zbygeutRcoG3el0DhtAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-15 06:38:41
(16 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 06:00:19
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:00:11.413907 2026] [security2:error] [pid 1063:tid 1063] [client 34.131.178.216:43758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zazuza.com"] [uri "/app/.git/config"] [unique_id "ai-U67U1UfXXOkJGf0HMSwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-15 05:27:54
(17 hours ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
ruusvuu
2026-06-15 04:59:31
(17 hours ago)
Automated abuse report: 25 attack/probe requests from Google LLC / IN.
Targeted paths: /backend/.git ...
show more
Automated abuse report: 25 attack/probe requests from Google LLC / IN.
Targeted paths: /backend/.git/config, /html/.git/config, /dashboard/.git/config, /portal/.git/config, /site/.git/config.
Sample log lines:
[shots] ๐ 6/14/2026, 21:59:29 34.131.178.216 GET /api/.git/config 404 - 0.825 ms
[shots] ๐ 6/14/2026, 21:59:29 34.131.178.216 GET /dist/.git/config 404 - 0.830 ms
[shots] ๐ 6/14/2026, 21:59:29 34.131.178.216 GET /frontend/.git/config 404 - 0.850 ms
Detected by an automated web-server log monitor.
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 02:58:35
(19 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-15 02:34:05
(20 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:21:15
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:21:09.005125 2026] [security2:error] [pid 27163:tid 27163] [client 34.131.178.216:46214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lowcostbloodtest.org.bloodtestinchicago.com"] [uri "/backend/.git/config"] [unique_id "ai9Thde1X6cy5_4ThA220AAAAFk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-06-15 00:03:05
(22 hours ago)
Too many 404 requests [BY]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:07:56
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:07:51.813867 2026] [security2:error] [pid 20816:tid 20816] [client 34.131.178.216:39966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "articulaterecords.com"] [uri "/project/.git/config"] [unique_id "ai80R0zy-SATk7szX0eEgAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-14 22:02:12
(1 day ago)
Bot / seems abusive / Apache connections: 30
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:45:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.178.216 (216.178.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:45:43.414788 2026] [security2:error] [pid 23816:tid 23819] [client 34.131.178.216:52580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rawsynergy.com"] [uri "/site/.git/config"] [unique_id "ai8hB1BkFamDxFOBpdMXnwAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack