๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 21:59:52
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 09:59:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:59:20.129992 2026] [security2:error] [pid 19132:tid 19132] [client 34.151.139.137:55442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bigislandhawaiirealty.com.kh6jim.com"] [uri "/admin/.git/config"] [unique_id "ai_M-E3UlRUP5yNQhO4TwAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-15 09:39:47
(1 week ago)
5.365 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 09:36:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:36:00.574996 2026] [security2:error] [pid 1479:tid 1479] [client 34.151.139.137:37968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newcitypark.com"] [uri "/.git/config"] [unique_id "ai_HgHQDw4yW89wWODWs3QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
DrLex0
2026-06-15 09:12:38
(1 week ago)
Poking for git configs at excessive rate, fuck Google for serving this crap
34.151.139.137 443 - [1 ...
show more
Poking for git configs at excessive rate, fuck Google for serving this crap
34.151.139.137 443 - [15/Jun/2026:09:12:38 +0000] "GET /laravel/.git/config HTTP/1.1" 404 5969 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.4 (KHTML like Gecko) Chrome/22.0.1229.56 Safari/537.4"
34.151.139.137 443 - [15/Jun/2026:09:12:38 +0000] "GET /code/.git/config HTTP/1.1" 404 5969 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/16B92 MicroMessenger/7.0.5(0x17000523) NetType/WIFI Language/zh_CN"
34.151.139.137 443 - [15/Jun/2026:09:12:38 +0000] "GET /symfony/.git/config HTTP/1.1" 404 5969 "-" "Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.8.0.7) Gecko/20060909 Firefox/1.5.0.7 MG(Novarra-Vision/6.9)"
34.151.139.137 443 - [15/Jun/2026:09:12:38 +0000] "GET /project/.git/config HTTP/1.1" 404 5969 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.25 Safari/537.36 Core/1.70.3722.400 QQBrowser/10.5.3738.400"
show less
DDoS Attack
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-06-15 06:00:12
(1 week ago)
Blocked by Conn-Monitor: Automated bot activity
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-15 05:43:24
(1 week ago)
[MonJun1507:43:21.3882902026][security2:error][pid3810923:tid3810930][client34.151.139.137:0]ModSecu ...
show more
[MonJun1507:43:21.3882902026][security2:error][pid3810923:tid3810930][client34.151.139.137:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"orabonastudio.it.136-243-54-122.cpanel.site\"][uri\"/html/.git/config\"][unique_id\"ai-Q-d22Mm_rIA_xstqr9gAAAMQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ฎ
YF
2026-06-15 05:01:00
(1 week ago)
Git config exposure probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 04:19:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:19:53.873988 2026] [security2:error] [pid 12459:tid 12465] [client 34.151.139.137:57928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stat.ramona.town"] [uri "/html/.git/config"] [unique_id "ai99aQ7lyAKz8I1WY49apQAAAQM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-15 04:14:04
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฏ๐ต
HeliJP
2026-06-15 03:45:36
(1 week ago)
2026-06-15T03:37:56Z - Recognized attacks\bad behavior from IP address 34.151.139.137 on port 443\80 ...
show more
2026-06-15T03:37:56Z - Recognized attacks\bad behavior from IP address 34.151.139.137 on port 443\80 (30 daily hits): client denied by server configuration
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Web App Attack
๐บ๐ธ
JustMeHere
2026-06-15 01:32:10
(1 week ago)
[Sun Jun 14 21:32:05.752733 2026] [security2:error] [pid 165658:tid 165739] [client 34.151.139.137:5 ...
show more
[Sun Jun 14 21:32:05.752733 2026] [security2:error] [pid 165658:tid 165739] [client 34.151.139.137:59248] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "gateway.yorknation.com"] [uri "/app/.git/config"] [unique_id "ai9WFXTnOXD-79vlCENAsgAAAAk"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:26:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:26:07.793036 2026] [security2:error] [pid 31098:tid 31098] [client 34.151.139.137:43534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hillconsultants.com"] [uri "/html/.git/config"] [unique_id "ai9Ur-u4U_OB-gkucXDc3QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:52:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.139.137 (137.139.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:52:41.931881 2026] [security2:error] [pid 21674:tid 21674] [client 34.151.139.137:49920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "franciscoforever.evolute.io"] [uri "/laravel/.git/config"] [unique_id "ai8-ycCsxBGuSGUM7uQ9FwAAAD4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
SCHAPPY
2026-06-14 23:42:59
(1 week ago)
Critical web app attack detected. HTTP header is restricted by policy (/accept-charset/)
Web App Attack