๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:24
(2 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
FeG Deutschland
2026-06-15 10:03:31
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-15 08:20:57
(2 months ago)
Try to access /v1/.git/config
Web App Attack
๐ง๐ช
cmbplf
2026-06-15 06:38:00
(2 months ago)
1.221 requests with url.path */.git/config
Brute-Force
Bad Web Bot
Anonymous
2026-06-15 06:37:05
(2 months ago)
Bot / scanning and/or hacking attempts: GET /portal/.git/config HTTP/1.1, GET /wp-content/.git/confi ...
show more
Bot / scanning and/or hacking attempts: GET /portal/.git/config HTTP/1.1, GET /wp-content/.git/config HTTP/1.1, GET /project/.git/config HTTP/1.1, GET /code/.git/config HTTP/1.1, GET /admin/.git/config HTTP/1.1, GET /backend/.git/config HTTP/1.1, GET /frontend/.git/config HTTP/1.1, GET /build/.git/config HTTP/1.1, GET /.git/config HTTP/1.1, GET /v1/.git/config HTTP/1.1, GET /app/.git/config HTTP/1.1, GET /api/.git/config HTTP/1.1, GET /blog/.git/config HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:35:52
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.181.118 (118.181.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.181.118 (118.181.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:35:44.641836 2026] [security2:error] [pid 20069:tid 20138] [client 34.131.181.118:41430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juantrece.emehache.net"] [uri "/html/.git/config"] [unique_id "ai-dQPfP_lHNF12o97evtAAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 06:35:02
(2 months ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-15 06:16:20
(2 months ago)
20 attempts against mh-misbehave-ban on eris
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:08:45
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.181.118 (118.181.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.181.118 (118.181.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:08:41.873765 2026] [security2:error] [pid 21768:tid 21768] [client 34.131.181.118:37446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trevthomas.com"] [uri "/html/.git/config"] [unique_id "ai-W6RxPLWlYNjIvIi78fQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 05:46:46
(2 months ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:42:17
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.181.118 (118.181.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.181.118 (118.181.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:42:10.188935 2026] [security2:error] [pid 26090:tid 26090] [client 34.131.181.118:52008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tribwatch.com"] [uri "/dist/.git/config"] [unique_id "ai-QskhWWcCMWlZt9tLAuAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 04:36:58
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐จ๐ญ
SophieN25
2026-06-15 04:30:01
(2 months ago)
Automatically blocked by server
Fraud Orders
๐ณ๐ฑ
wlt-blocker
2026-06-15 03:18:17
(2 months ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
Gabriel Camargo
2026-06-15 03:00:39
(2 months ago)
34.131.181.118 - - [14/Jun/2026:22:00:39 -0500] "GET /.git/config HTTP/1.1" 301 178 "-" "Mozilla/5.0 ...
show more
34.131.181.118 - - [14/Jun/2026:22:00:39 -0500] "GET /.git/config HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Linux; U; Android 2.0; en-us; Droid Build/ESD20) AppleWebKit/530.17 (KHTML, like Gecko) Version/4.0 Mobile Safari/530.17"
34.131.181.118 - - [14/Jun/2026:22:00:39 -0500] "GET /app/.git/config HTTP/1.1" 301 178 "-" "Mozilla/4.0 (Windows; U; MSIE 7.0; Windows NT 6.0; .NET CLR 1.0.40727; Media Center PC 4.0; InfoPath.1; en-NZ)"
34.131.181.118 - - [14/Jun/2026:22:00:39 -0500] "GET /frontend/.git/config HTTP/1.1" 301 178 "-" "Mozilla/5.0 (X11; U; Linux x86_64; en-us) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/30.0.1599.114 Safari/537.36 Puffin/4.8.0.2965AT"
...
show less
Brute-Force
SSH