๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:03:06
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-13.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-13 22:01:54
(1 week ago)
Auto-ban: >3000 req/min op 2026-06-13
Web App Attack
SSH
Hacking
๐ฉ๐ช
4server
2026-06-13 16:38:44
(1 week ago)
[SatJun1318:38:40.5364292026][security2:error][pid1365348:tid1365419][client34.150.39.28:0]ModSecuri ...
show more
[SatJun1318:38:40.5364292026][security2:error][pid1365348:tid1365419][client34.150.39.28:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.bluwater.ch.136-243-54-122.cpanel.site\"][uri\"/.git/config\"][unique_id\"ai2HkM44HZ2Sdic5kVpFZwAAAIc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 16:04:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 12:04:54.129161 2026] [security2:error] [pid 18125:tid 18125] [client 34.150.39.28:48116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.skintormint.com"] [uri "/.git/config"] [unique_id "ai1_pvpsGD8XxlOcx8-2oAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:03:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:03:29.688498 2026] [security2:error] [pid 17398:tid 17398] [client 34.150.39.28:41056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.karsini-services.com"] [uri "/.git/config"] [unique_id "ai05AU1UM2fZr2K9VWfRMwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-06-13 08:27:13
(1 week ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-13 08:21:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 04:21:15.051338 2026] [security2:error] [pid 16597:tid 16597] [client 34.150.39.28:36384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hookedupfishing.net"] [uri "/.git/config"] [unique_id "ai0S-47GnHJsK1yc5ZK5twAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-13 08:00:22
(1 week ago)
9.936 requests in 1 hour (3w5d20h)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-13 07:51:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 03:51:04.088317 2026] [security2:error] [pid 12567:tid 12684] [client 34.150.39.28:52808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.businesscertification.org.aafm.us"] [uri "/.git/config"] [unique_id "ai0L6ERm3qKk1qIz9ibAvwAAAlE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
IVski
2026-06-13 07:13:43
(1 week ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 06:46:09
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:46:04.599731 2026] [security2:error] [pid 29716:tid 29716] [client 34.150.39.28:48346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lemoulinavent.org"] [uri "/.git/config"] [unique_id "aiz8rG6fAtqrkthFII8tfgAAAEQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 05:23:52
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 01:23:46.445672 2026] [security2:error] [pid 13739:tid 13739] [client 34.150.39.28:40168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jamesedwardskinner.bridgital.com"] [uri "/.git/config"] [unique_id "aizpYnb3vpyl-Nn-j5DpBgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-13 04:50:02
(1 week ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 04:30:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.39.28 (28.39.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 00:30:20.071157 2026] [security2:error] [pid 16081:tid 16081] [client 34.150.39.28:36472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blockaderestoration.weyoungrenovations.com"] [uri "/.git/config"] [unique_id "aizc3CCKNim6Aag4YscSbgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-13 04:06:04
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack