๐ณ๐ฑ
homeshowdomain.nl
2026-07-23 22:03:03
(13 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-22.
show less
Web App Attack
SSH
Hacking
Anonymous
2026-07-23 04:31:55
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
Anonymous
2026-07-23 03:48:09
(1 day ago)
Suspicious or malicious traffic has been detected
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-22 22:51:13
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 22:10:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 18:10:51.723367 2026] [security2:error] [pid 2132:tid 2132] [client 34.148.95.13:33206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taafe.xyz"] [uri "/.git/config"] [unique_id "amE_60bdgHtegW1Y1R6nhQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-07-22 22:06:53
(1 day ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-22 21:18:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 17:18:51.496935 2026] [security2:error] [pid 1294039:tid 1294039] [client 34.148.95.13:33624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "millmade.com"] [uri "/.git/config"] [unique_id "amEzu_UkSd3_Xo26aloVAwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
cwytech
2026-07-22 21:11:55
(1 day ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/tpot-http-sensitive-files.
Bad Web Bot
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-07-22 20:42:22
(1 day ago)
Probing for non-installed web apps or current vulnerabilities.
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 20:40:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 16:40:01.617103 2026] [security2:error] [pid 1624741:tid 1624741] [client 34.148.95.13:52326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agribrokers.net"] [uri "/.git/config"] [unique_id "amEqoReO0wf4mxWbSC8YMwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐ณ
soporte
2026-07-22 19:58:27
(1 day ago)
Probe for vulnerabilities. Path attempted: /.git/config
Web App Attack
๐บ๐ธ
mnsf
2026-07-22 19:05:20
(1 day ago)
Abuse Detected (10)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 18:50:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 14:50:20.085202 2026] [security2:error] [pid 2494788:tid 2494788] [client 34.148.95.13:45274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thunder-kings.hodlmoser.com"] [uri "/.git/config"] [unique_id "amEQ7GWE1N3FfHIQQ-MDfgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-07-22 18:42:49
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.148.95.13 (US/United States/13.9 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.148.95.13 (US/United States/13.95.148.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 18:35:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.95.13 (13.95.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 14:35:06.590820 2026] [security2:error] [pid 1463709:tid 1463709] [client 34.148.95.13:51256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.portfolio.hotelausland.com"] [uri "/.git/config"] [unique_id "amENWsARU4O-eOjynOtJ4AAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack