๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:24
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 10:02:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 06:02:03.700001 2026] [security2:error] [pid 28765:tid 28765] [client 34.131.183.203:58806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "linnardfinancial.com"] [uri "/.git/config"] [unique_id "ai_Nm62_IdCc7bF9qqc44wAAAHc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:19:43
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:19:40.027820 2026] [security2:error] [pid 16171:tid 16171] [client 34.131.183.203:52426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.checkmyvaluemorganhill.kunzteam.com"] [uri "/dashboard/.git/config"] [unique_id "ai-1nK_V3ZjZu2fNtcWYnwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 06:32:12
(3 days ago)
Bot / seems abusive / Apache connections: 48
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:11:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:11:23.967551 2026] [security2:error] [pid 15025:tid 15025] [client 34.131.183.203:46578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.l3prime.systemcapacityoptimization.com"] [uri "/api/.git/config"] [unique_id "ai-Xi83NnHnWOuCB3gr1RAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
itsolon
2026-06-15 03:19:30
(3 days ago)
[15/Jun/2026:05:19:30 +0200] 178149357031.974920 34.131.183.203 0 217.154.7.177 443
[15/Jun/2026:05: ...
show more
[15/Jun/2026:05:19:30 +0200] 178149357031.974920 34.131.183.203 0 217.154.7.177 443
[15/Jun/2026:05:19:30 +0200] 178149357050.860082 34.131.183.203 0 217.154.7.177 443
[15/Jun/2026:05:19:30 +0200] 178149357031.482314 34.131.183.203 0 217.154.7.177 443
[15/Jun/2026:05:19:30 +0200] 178149357072.838995 34.131.183.203 0 217.154.7.177 443
[15/Jun/2026:05:19:30 +0200] 178149357034.698931 34.131.183.203 0 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
Anonymous
2026-06-15 02:56:25
(3 days ago)
[server.tmg.gr] httpd-suspicious-path: sites=cardiorenal2024.gr; logs=/var/log/httpd/domains/cardior ...
show more
[server.tmg.gr] httpd-suspicious-path: sites=cardiorenal2024.gr; logs=/var/log/httpd/domains/cardiorenal2024.gr.log; samples=/shop/.git/config | /laravel/.git/config | /code/.git/config
show less
Hacking
Web App Attack
๐ฏ๐ต
stypr
2026-06-15 01:32:03
(3 days ago)
Malicious activity detected on HTTP/HTTPS
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:19:58
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:19:53.663580 2026] [security2:error] [pid 27066:tid 27066] [client 34.131.183.203:43588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eckerberg.net"] [uri "/.git/config"] [unique_id "ai9TOZEqVrr8MJnhYQ67CAAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-06-15 01:02:58
(3 days ago)
Failed attempt detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 00:37:48
(3 days ago)
(modsecurity) srv102 ModSecurity 34.131.183.203 (IN/India/203.183.131.34.bc.googleusercontent.com): ...
show more
(modsecurity) srv102 ModSecurity 34.131.183.203 (IN/India/203.183.131.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ซ๐ท
GoodOldTOS
2026-06-15 00:26:28
(3 days ago)
Bad keywords detected in request: /.git/config/.git
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:14:06
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.183.203 (203.183.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:14:03.590494 2026] [security2:error] [pid 4150:tid 4150] [client 34.131.183.203:52284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "haverhillhouse.com"] [uri "/code/.git/config"] [unique_id "ai81u9yf-QRRRt0TyjFJaQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 21:57:45
(3 days ago)
20 attempts against mh-misbehave-ban on ficus
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-14 20:49:34
(3 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack