๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:04:38
(4 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
Stefan Dreher
2026-06-15 17:06:04
(4 days ago)
34.151.73.168 - - [15/Jun/2026:19:06:03 +0200] "GET /frontend/.git/config HTTP/1.1" 404 125 "-" "Bla ...
show more
34.151.73.168 - - [15/Jun/2026:19:06:03 +0200] "GET /frontend/.git/config HTTP/1.1" 404 125 "-" "BlackBerry7520/4.0.0 Profile/MIDP-2.0 Configuration/CLDC-1.1 UP.Browser/5.0.3.3 UP.Link/5.1.2.12 (Google WAP Proxy/1.0)"
34.151.73.168 - - [15/Jun/2026:19:06:03 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 187 "-" "Mozilla/5.0 (Linux; Android 9; CLT-L29 Build/HUAWEICLT-L29) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Mobile Safari/537.36 OPR/48.1.2331.132804"
34.151.73.168 - - [15/Jun/2026:19:06:03 +0200] "GET /admin/.git/config HTTP/1.1" 404 187 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.142 Safari/537.36"
34.151.73.168 - - [15/Jun/2026:19:06:03 +0200] "GET /public/.git/config HTTP/1.1" 404 187 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36"
34.151.73.168 - - [15/Jun/2026:19:06:03 +0200] "GET /html/.git/config HTTP/1.1" 404 187 "-" "Mozilla/5.0 (Windows NT 10.0; Win6
show less
Hacking
Brute-Force
๐น๐ท
Threat.live
2026-06-15 15:05:02
(4 days ago)
Suspicious Connection Attempts
Brute-Force
๐ง๐ช
cmbplf
2026-06-15 11:43:14
(4 days ago)
1.258 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐บ๐ธ
itsnixk
2026-06-15 10:57:21
(4 days ago)
(mod_security) mod_security (id:930130) triggered by 34.151.73.168 (AU/Australia/168.73.151.34.bc.go ...
show more
(mod_security) mod_security (id:930130) triggered by 34.151.73.168 (AU/Australia/168.73.151.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 06:57:17.030821 2026] [security2:error] [pid 387306:tid 387428] [client 34.151.73.168:33268] ModSecurity: Access denied with code 406 (phase 1). Matched phrase ".git/" at REQUEST_FILENAME. [file "/etc/modsecurity.d/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "150"] [id "930130"] [msg "Restricted File Access Attempt"] [redacted] [severity "CRITICAL"] [ver "OWASP_CRS/4.26.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/ATTACK-LFI"] [tag "capec/1000/255/153/126"] [redacted] [uri "/.git/config"] [unique_id "ai_ajdDxfRSeQb7tHJgmEwAAACc"]
show less
Port Scan
๐ฌ๐ง
poundawebsiteltd
2026-06-15 09:13:56
(4 days ago)
Web App Attack (ModSecurity Block). Evidence: [REDACTED_DOMAIN]:443 34.151.73.168 - - [15/Jun/2026:1 ...
show more
Web App Attack (ModSecurity Block). Evidence: [REDACTED_DOMAIN]:443 34.151.73.168 - - [15/Jun/2026:10:13:54 +0100] GET /symfony/.git/config HTTP/1.1 403 2799 - Opera/9.80 (Android 4.0.4; Linux; Opera Mobi/ADR-1205181138; U; pl) Presto/2.10.254 Version/12.00
show less
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-06-15 08:59:06
(4 days ago)
paulshipley.com.au:443 34.151.73.168 - - [15/Jun/2026:18:59:05 +1000] "GET /src/.git/config HTTP/1.1 ...
show more
paulshipley.com.au:443 34.151.73.168 - - [15/Jun/2026:18:59:05 +1000] "GET /src/.git/config HTTP/1.1" 403 4995 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 Safari/537.36"
paulshipley.com.au:443 34.151.73.168 - - [15/Jun/2026:18:59:05 +1000] "GET /.git/config HTTP/1.1" 403 4996 "-" "Mozilla/5.0 (iPad; CPU OS 6_0 like Mac OS X) AppleWebKit/536.26 (KHTML, like Gecko) Version/6.0 Mobile/10A5355d Safari/8536.25"
paulshipley.com.au:443 34.151.73.168 - - [15/Jun/2026:18:59:05 +1000] "GET /backend/.git/config HTTP/1.1" 403 4995 "-" "Mozilla/5.0 (Linux; Android 9; SM-G970U1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
paulshipley.com.au:443 34.151.73.168 - - [15/Jun/2026:18:59:05 +1000] "GET /app/.git/config HTTP/1.1" 403 4995 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_4 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) GSA/80.0.262003652 Mobile/16G77 Safari/604.1"
paulshipley.com.au:
...
show less
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 08:50:06
(4 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ซ๐ท
vtchost.com
2026-06-15 08:31:43
(4 days ago)
minux.cc:443 34.151.73.168 - - [15/Jun/2026:10:31:42 +0200] "GET /v2/.git/config HTTP/1.1" 418 4161 ...
show more
minux.cc:443 34.151.73.168 - - [15/Jun/2026:10:31:42 +0200] "GET /v2/.git/config HTTP/1.1" 418 4161 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Safari/537.36"
...
show less
Bad Web Bot
๐ฌ๐ง
consul.to
2026-06-15 07:50:50
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:42:17
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.151.73.168 (168.73.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.73.168 (168.73.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:42:09.081845 2026] [security2:error] [pid 27934:tid 27934] [client 34.151.73.168:37718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title45.com"] [uri "/api/.git/config"] [unique_id "ai-ewedCXNL_51x-SGpc0gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:03:54
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.151.73.168 (168.73.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.73.168 (168.73.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:03:46.062662 2026] [security2:error] [pid 22572:tid 22572] [client 34.151.73.168:58456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "majesticsolutions.co"] [uri "/code/.git/config"] [unique_id "ai-VwvBC-0dx6d1I5BQUEAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-15 05:55:40
(4 days ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ฉ๐ช
4server
2026-06-15 05:06:41
(4 days ago)
[MonJun1507:06:36.0596492026][security2:error][pid3650296:tid3650305][client34.151.73.168:0]ModSecur ...
show more
[MonJun1507:06:36.0596492026][security2:error][pid3650296:tid3650305][client34.151.73.168:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"ecosuber.com\"][uri\"/code/.git/config\"][unique_id\"ai-IXIZ-XF-x1qSNvze4yAAAAIY\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฒ๐พ
Rizzy
2026-06-15 03:51:18
(4 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack