π³π±
homeshowdomain.nl
2026-05-23 22:01:01
(3 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-22.
show less
Web App Attack
SSH
Hacking
π³π±
homeshowdomain.nl
2026-05-22 21:59:44
(3 weeks ago)
Auto-ban: >3000 req/min op 2026-05-22
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-05-22 19:09:51
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 15:09:47.437307 2026] [security2:error] [pid 21216:tid 21216] [client 34.176.65.50:60412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "isaacrivas.com"] [uri "/.git/config"] [unique_id "ahCp-5FWE6BSFBXzj3AFAgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 18:41:01
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 14:40:53.242801 2026] [security2:error] [pid 23635:tid 23635] [client 34.176.65.50:57262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lialuminum.com"] [uri "/.git/config"] [unique_id "ahCjNV1ZrPxBrSJP1e7BjwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-22 14:00:02
(4 weeks ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 13:48:31
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:48:27.707848 2026] [security2:error] [pid 5965:tid 5965] [client 34.176.65.50:50400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rookscpa.com"] [uri "/.git/config"] [unique_id "ahBeqzax4mstlHz1aiF_zAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 12:38:59
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:38:51.905339 2026] [security2:error] [pid 10154:tid 10154] [client 34.176.65.50:43468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mintgames.com"] [uri "/.git/config"] [unique_id "ahBOW8nW5sthIVdmH0eOOwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 10:06:39
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 06:06:32.232091 2026] [security2:error] [pid 27349:tid 27349] [client 34.176.65.50:46750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.creartest.com"] [uri "/.git/config"] [unique_id "ahAqqPwvc7FzsXHr1FmurgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 08:56:50
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 04:56:45.554199 2026] [security2:error] [pid 6974:tid 6974] [client 34.176.65.50:60668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.chibbychubbs.com"] [uri "/.git/config"] [unique_id "ahAaTW4DZEpxTl6iy5CKagAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
HERA - Operations
2026-05-22 08:49:00
(4 weeks ago)
argeforum - searching for vulnerable scripts: config 2026/05/22 10:49:00
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 08:08:51
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.65.50 (50.65.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 04:08:46.386722 2026] [security2:error] [pid 23100:tid 23100] [client 34.176.65.50:52228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.alfredintelligence.com"] [uri "/.git/config"] [unique_id "ahAPDkaaEVN5XP5sSnTpUAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-22 05:20:06
(4 weeks ago)
| [Dangerous/Chile] Aggressive IP 34.176.65.50 (~30 hits). Type: DoS Defender- Web server 400 error ...
show more
| [Dangerous/Chile] Aggressive IP 34.176.65.50 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
π³π±
Cloud86 B.V.
2026-05-22 04:00:03
(4 weeks ago)
categories: DDoS Attack
DDoS Attack
π¬π§
PeravixGroup
2026-05-19 22:11:41
(4 weeks ago)
Honeypot detection: Elasticsearch unauthorized access / data leak attempt on port 9200. Severity: ME ...
show more
Honeypot detection: Elasticsearch unauthorized access / data leak attempt on port 9200. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host