๐ณ๐ฑ
homeshowdomain.nl
2026-05-23 21:59:24
(3 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-22.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-22 19:06:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 15:05:55.924684 2026] [security2:error] [pid 8018:tid 8026] [client 34.16.174.47:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mindgardens.com"] [uri "/.git/config"] [unique_id "ahCpExs0HIbwzryf1Qb6OwAAAYY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 18:49:35
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 14:49:28.503010 2026] [security2:error] [pid 17745:tid 17781] [client 34.16.174.47:36958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ainavelas.com.venezuelaguia.com"] [uri "/.git/config"] [unique_id "ahClOOGNZusPyoW7OfiUswAAAVM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 17:43:13
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 13:43:09.288706 2026] [security2:error] [pid 18516:tid 18516] [client 34.16.174.47:35282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.images.hotwheelguide.com"] [uri "/.git/config"] [unique_id "ahCVrTMZ35viXFWkuRS4TgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 13:45:20
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:45:12.793096 2026] [security2:error] [pid 16781:tid 16781] [client 34.16.174.47:54076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elhosting.us"] [uri "/.git/config"] [unique_id "ahBd6DmlTpNYFWijrQxDlQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 13:27:54
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:27:49.630082 2026] [security2:error] [pid 28697:tid 28697] [client 34.16.174.47:50058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jabbosjingles.com"] [uri "/.git/config"] [unique_id "ahBZ1T80LwgYCc2kHDPojAAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 10:02:41
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.174.47 (47.174.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 06:02:34.879063 2026] [security2:error] [pid 15284:tid 15284] [client 34.16.174.47:35088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lgbtqhistoryinaustin.org"] [uri "/.git/config"] [unique_id "ahApuoYuj1hTzANSC_2HhgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
markawes
2026-05-22 07:49:46
(3 months ago)
[markis] Auto banned by Fail2Ban. Reason: Malicious web scan / attempted access to sensitive paths. ...
show more
[markis] Auto banned by Fail2Ban. Reason: Malicious web scan / attempted access to sensitive paths. Evidence:
34.16.174.47 - - [22/May/2026:08:49:44 +0100] "GET /.git/config HTTP/1.1" 404 3060 "-" "Nokia6630/1.0 (2.39.15) SymbianOS/8.0 Series60/2.6 Profile/MIDP-2.0 Configuration/CLDC-1.1"
34.16.174.47 - - [22/May/2026:08:49:44 +0100] "GET /.git/config HTTP/1.1" 404 3055 "-" "Mozilla/5.0 (Linux; Android 6.0; LG-D850 Build/MRA58K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/53.0.2785.97 Mobile Safari/537.36"
34.16.174.47 - - [22/May/2026:08:49:44 +0100] "GET /.git/config HTTP/1.1" 404 3063 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.142 Safari/537.36 OPR/62.0.3331.116"
show less
Port Scan
Hacking
Web App Attack
๐ฌ๐ง
PeravixGroup
2026-05-20 10:52:11
(3 months ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot