๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:24
(4 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 10:16:08
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 06:16:00.668468 2026] [security2:error] [pid 26134:tid 26134] [client 34.131.30.80:48064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "waleed.co.waleed-alshalan.com"] [uri "/wp-content/.git/config"] [unique_id "ai_Q4FpQO2h1I0zXAqyTEAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-06-15 09:37:16
(5 days ago)
CrowdSec abuse IP report (host SRV-2) Scenario: crowdsecurity/http-sensitive-files
Hacking
๐ณ๐ฟ
Antinson
2026-06-15 06:56:31
(5 days ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ซ๐ท
masterguru
2026-06-15 06:22:17
(5 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ฉ๐ช
4server
2026-06-15 06:21:20
(5 days ago)
[MonJun1508:21:17.8980862026][security2:error][pid3892628:tid3892645][client34.131.30.80:0]ModSecuri ...
show more
[MonJun1508:21:17.8980862026][security2:error][pid3892628:tid3892645][client34.131.30.80:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mc-computer.ch.136-243-54-122.cpanel.site\"][uri\"/shop/.git/config\"][unique_id\"ai-Z3ZtzAPZDdmef6U_-aQAAAA4\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:14:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:14:19.011999 2026] [security2:error] [pid 4585:tid 4585] [client 34.131.30.80:48040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photonmatrix.com"] [uri "/api/.git/config"] [unique_id "ai-YO08_A6GQDFO4JZ8rogAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
clamehost.it
2026-06-15 05:31:59
(5 days ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
๐ณ๐ฑ
maxxsense
2026-06-15 02:45:15
(5 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.131.30.80 (IN/India/80.30.131.34.bc. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.131.30.80 (IN/India/80.30.131.34.bc.googleusercontent.com)
show less
SQL Injection
๐ง๐ช
cmbplf
2026-06-15 02:06:17
(5 days ago)
2.132 requests from abuseipdb.com blacklisted IP (1yr4mos1w)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 01:45:05
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:44:56.300663 2026] [security2:error] [pid 24593:tid 24593] [client 34.131.30.80:36218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atm.michaelpmcgrath.com"] [uri "/admin/.git/config"] [unique_id "ai9ZGGI3ZFyqsc-d7GrUtAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
iulianh
2026-06-15 01:20:33
(5 days ago)
80,443
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-15 00:49:39
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:49:34.051197 2026] [security2:error] [pid 7330:tid 7330] [client 34.131.30.80:57584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sfsdesignsproductions.com"] [uri "/v2/.git/config"] [unique_id "ai9MHv17PLScLlWl5y6tjgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:57:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:57:19.707372 2026] [security2:error] [pid 25925:tid 25942] [client 34.131.30.80:47864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "epsbudgetcommittee.org"] [uri "/v3/.git/config"] [unique_id "ai8_3_WLhT7Vi976L83-dgAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:40:09
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.30.80 (80.30.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:40:02.500616 2026] [security2:error] [pid 10551:tid 10551] [client 34.131.30.80:35314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.example.directnic-support.rocks"] [uri "/app/.git/config"] [unique_id "ai8twlAZohnTpoIj0sNrRwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack