๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:00:09
(6 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 14:46:32
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:46:28.670759 2026] [security2:error] [pid 17376:tid 17376] [client 34.138.36.0:49648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karenjoyce.com"] [uri "/.git/config"] [unique_id "aignRNCM_y8P_6qHrHqB7AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:28:22
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:28:17.891954 2026] [security2:error] [pid 25825:tid 25825] [client 34.138.36.0:50722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fixmywellwater.com"] [uri "/.git/config"] [unique_id "aigG4SuwkH00tZQNVwXqowAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-09 11:27:56
(6 days ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:00:15
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:00:07.777608 2026] [security2:error] [pid 25369:tid 25369] [client 34.138.36.0:53882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bdalzellart.batw.net"] [uri "/.git/config"] [unique_id "aifyN8o_hykrqp-KqLPGMgAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:54:48
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:54:41.432645 2026] [security2:error] [pid 2191:tid 2191] [client 34.138.36.0:48346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.new-bethel-baptist-church.com.danged.com"] [uri "/.git/config"] [unique_id "aifi4T9lfoPk5znrwNB5lAAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-09 08:39:07
(6 days ago)
[TueJun0910:39:02.9938262026][security2:error][pid208736:tid209178][client34.138.36.0:0]ModSecurity: ...
show more
[TueJun0910:39:02.9938262026][security2:error][pid208736:tid209178][client34.138.36.0:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpcalendars.mondo-it.ch\"][uri\"/.git/config\"][unique_id\"aifRJrP-6WtfkDc8W5VVDgAAAM4\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:04:23
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:04:17.848445 2026] [security2:error] [pid 2670:tid 2670] [client 34.138.36.0:50036] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "b2c-llc.anthonyanimalclinic.net"] [uri "/.git/config"] [unique_id "aie68VpZskJFPUNp7s4tYgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-09 06:43:49
(6 days ago)
[TueJun0908:43:45.3959652026][security2:error][pid2495999:tid2496152][client34.138.36.0:0]ModSecurit ...
show more
[TueJun0908:43:45.3959652026][security2:error][pid2495999:tid2496152][client34.138.36.0:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.danielasilvia.ch\"][uri\"/.git/config\"][unique_id\"aie2ITKPFwPqEPttjoaJHwAAANM\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:30:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:30:45.903764 2026] [security2:error] [pid 9088:tid 9088] [client 34.138.36.0:41720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.frenosilent.ar"] [uri "/.git/config"] [unique_id "aielBc4XgDCGaTwXbAzWsgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:48:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:48:40.607773 2026] [security2:error] [pid 26008:tid 26032] [client 34.138.36.0:60354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mjkotob.com.oplconnect.com"] [uri "/.git/config"] [unique_id "aiebKHqILviD51uzcP3tegAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-09 04:40:44
(1 week ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 04:24:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:24:24.535237 2026] [security2:error] [pid 8109:tid 8109] [client 34.138.36.0:41788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.genlogoai.lobibilisim.com"] [uri "/.git/config"] [unique_id "aieVeF8RpVtG8bxW2Cb0yAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-09 04:11:39
(1 week ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:06:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.138.36.0 (0.36.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:06:32.145203 2026] [security2:error] [pid 29628:tid 29628] [client 34.138.36.0:44936] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "assheton.com"] [uri "/.git/config"] [unique_id "aieRSEOD3FJODwAoNuUpIwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack