๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:05:30
(4 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
piticu iuli
2026-06-15 04:45:40
(4 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.174.21.202 (US/United States/202.21. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.174.21.202 (US/United States/202.21.174.34.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
masterguru
2026-06-15 03:59:40
(4 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ฉ๐ช
Savvii
2026-06-15 02:47:30
(4 days ago)
20 attempts against mh-misbehave-ban on bush
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 02:13:03
(5 days ago)
Bot / scanning and/or hacking attempts: GET /v2/.git/config HTTP/1.1, GET /app/.git/config HTTP/1.1, ...
show more
Bot / scanning and/or hacking attempts: GET /v2/.git/config HTTP/1.1, GET /app/.git/config HTTP/1.1, GET /web/.git/config HTTP/1.1, GET /www/.git/config HTTP/1.1, GET /code/.git/config HTTP/1.1, GET /symfony/.git/config HTTP/1.1, GET /backend/.git/config HTTP/1.1, GET /wordpress/.git/config HTTP/1.1, GET /.git/config HTTP/1.1, GET /public/.git/config HTTP/1.1
show less
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 01:53:05
(5 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
bazter.pro
2026-06-15 01:06:44
(5 days ago)
Fail2Ban: apache-ratelimit - 20 failures
Port Scan
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-06-14 23:54:36
(5 days ago)
[Mon Jun 15 09:54:36.034860 2026] [security2:error] [pid 46591] [client 34.174.21.202:55552] [client ...
show more
[Mon Jun 15 09:54:36.034860 2026] [security2:error] [pid 46591] [client 34.174.21.202:55552] [client 34.174.21.202] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "support.paulshipley.com.au"] [uri "/src/.git/config"] [unique_id "ai8_PDrPy3y6oSVVnrSH8gAAAAM"]
...
show less
Web App Attack
๐ง๐ช
voormedia
2026-06-14 22:21:03
(5 days ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:03:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.174.21.202 (202.21.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.21.202 (202.21.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:03:19.994838 2026] [security2:error] [pid 20861:tid 20861] [client 34.174.21.202:41884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wilhelminas.biz"] [uri "/v3/.git/config"] [unique_id "ai8lJ5yzf0UulHQBBlXBtQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-14 22:02:33
(5 days ago)
Apache-badbot jail block
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-14 21:37:44
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.174.21.202 (202.21.174.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.174.21.202 (202.21.174.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:37:39.536823 2026] [security2:error] [pid 17015:tid 17015] [client 34.174.21.202:58948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "convtek.com"] [uri "/.git/config"] [unique_id "ai8fIyKlgWdKVjiqCP757gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
Abuse Buster
2026-06-14 20:54:02
(5 days ago)
34.174.21.202 - [14/Jun/2026:22:54:00 +0200] "GET /frontend/.git/config HTTP/2.0" 403 548 "-" "Mozil ...
show more
34.174.21.202 - [14/Jun/2026:22:54:00 +0200] "GET /frontend/.git/config HTTP/2.0" 403 548 "-" "Mozilla/5.0 (Linux; Android 8.0.0; G8441) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.99 YaBrowser/19.1.3.198.00 Mobile Safari/537.36" Connecting ip: 34.174.21.202 Forwared for: 34.174.21.202
34.174.21.202 - [14/Jun/2026:22:54:00 +0200] "GET /.git/config HTTP/2.0" 403 548 "-" "Mozilla/5.0 (Linux; Android 9; INE-LX1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36" Connecting ip: 34.174.21.202 Forwared for: 34.174.21.202
34.174.21.202 - [14/Jun/2026:22:54:00 +0200] "GET /backend/.git/config HTTP/2.0" 403 146 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:10.0.1) Gecko/20100101 Firefox/10.0.1" Connecting ip: 34.174.21.202 Forwared for: 34.174.21.202
34.174.21.202 - [14/Jun/2026:22:54:00 +0200] "GET /src/.git/config HTTP/2.0" 403 548 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-06-14 13:14:52
(5 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-iad5-2)
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 11:37:59
(5 days ago)
20 attempts against mh-misbehave-ban on lime
Brute-Force
Bad Web Bot
Web App Attack