๐ณ๐ฑ
homeshowdomain.nl
2026-05-23 21:59:25
(3 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-22.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-05-22 22:02:21
(3 weeks ago)
Auto-ban: >3000 req/min op 2026-05-22
Web App Attack
SSH
Hacking
๐บ๐ธ
etu brutus
2026-05-22 18:10:00
(3 weeks ago)
34.176.27.11 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-05-22 18:00:17
(3 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from CL.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from CL.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-05-22T16:05:40Z
Ray ID: 9ffd105089c4af2f
UA: Mozilla/5.0 (Linux; Android 7.1.2; Nexus 6P Build/N2G48C) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.107 Mobile Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-22 17:34:12
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 13:34:07.942791 2026] [security2:error] [pid 8018:tid 8044] [client 34.176.27.11:39710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.asipm.aafm.us"] [uri "/.git/config"] [unique_id "ahCTjxs0HIbwzryf1QbKKQAAAZg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
YF
2026-05-22 17:05:26
(3 weeks ago)
Git config exposure probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 15:55:43
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 11:55:38.159308 2026] [security2:error] [pid 28294:tid 28294] [client 34.176.27.11:59104] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ask2024.com.whatifandwhynot.xyz"] [uri "/.git/config"] [unique_id "ahB8enl0QFzQwGUwEaSQsgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 13:37:16
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:37:09.251407 2026] [security2:error] [pid 14570:tid 14570] [client 34.176.27.11:54938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rwabutazafoundation.org"] [uri "/.git/config"] [unique_id "ahBcBf11EYO_TkZhRRlhWQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-22 12:35:02
(3 weeks ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 12:16:16
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:16:10.366565 2026] [security2:error] [pid 28687:tid 28687] [client 34.176.27.11:60026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.washougalchamber.com"] [uri "/.git/config"] [unique_id "ahBJCoa2Rjqh_4mePJpHpAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 08:25:52
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.27.11 (11.27.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 04:25:45.541426 2026] [security2:error] [pid 11799:tid 11799] [client 34.176.27.11:49928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.robin5on.com"] [uri "/.git/config"] [unique_id "ahATCQ2D83shlQggO850WgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-22 07:48:55
(3 weeks ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
Anonymous
2026-05-22 01:30:03
(3 weeks ago)
| [Dangerous/Chile] Aggressive IP 34.176.27.11 (~30 hits). Type: DoS Defender- Web server 400 error ...
show more
| [Dangerous/Chile] Aggressive IP 34.176.27.11 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ณ๐ฑ
Cloud86 B.V.
2026-05-22 00:29:10
(3 weeks ago)
categories: DDoS Attack
DDoS Attack
๐ซ๐ท
geeek
2026-05-20 09:26:53
(4 weeks ago)
Port scanning: 8080 TCP Blocked
Port Scan