๐ซ๐ฎ
payincog
2026-06-14 13:06:10
(7 hours ago)
Date: Jun 14 15:15:15 2026 EAT | Reported IP: 34.180.40.48 mod_security | id: 920350 930130 949110 | ...
show more
Date: Jun 14 15:15:15 2026 EAT | Reported IP: 34.180.40.48 mod_security | id: 920350 930130 949110 | IN/pay.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeric IP address; Host header is a numeri
show less
SQL Injection
Brute-Force
Bad Web Bot
๐ซ๐ท
dynamix
2026-06-14 13:03:34
(7 hours ago)
Multiple WAF Violations
Web App Attack
๐ง๐พ
lns.bz
2026-06-14 12:42:38
(8 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ฆ๐บ
aranguren.org
2026-06-14 10:10:39
(10 hours ago)
34.180.40.48 - - [14/Jun/2026:20:10:38 +1000] "GET /api/.git/config HTTP/1.1" 301 285 "-" "Mozilla/5 ...
show more
34.180.40.48 - - [14/Jun/2026:20:10:38 +1000] "GET /api/.git/config HTTP/1.1" 301 285 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Safari/537.36"
34.180.40.48 - - [14/Jun/2026:20:10:38 +1000] "GET /.git/config HTTP/1.1" 301 281 "-" "Mozilla/5.0 (Linux; Android 4.4.4; XT1032 Build/KXB21.14-L1.61) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.94 Mobile Safari/537.36"
34.180.40.48 - - [14/Jun/2026:20:10:38 +1000] "GET /html/.git/config HTTP/1.1" 301 286 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.4 (KHTML like Gecko) Chrome/22.0.1229.56 Safari/537.4"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 10:05:46
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 06:05:42.090217 2026] [security2:error] [pid 1690:tid 1690] [client 34.180.40.48:37042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jayjbakes.com"] [uri "/backend/.git/config"] [unique_id "ai589tkLrVtnlVY3B2nlGwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
todix
2026-06-14 07:24:45
(13 hours ago)
WebAttack or semilar from 34.180.40.48
Web App Attack
Anonymous
2026-06-14 06:57:39
(13 hours ago)
34.180.40.48 - - [14/Jun/2026:14:57:38 +0800] "GET /app/.git/config HTTP/1.1" 200 19012 "-" "Mozilla ...
show more
34.180.40.48 - - [14/Jun/2026:14:57:38 +0800] "GET /app/.git/config HTTP/1.1" 200 19012 "-" "Mozilla/5.0 (compatible; MSIE 9.0; Windows Phone OS 7.5; Trident/5.0; IEMobile/9.0)"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 06:23:02
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 02:22:53.721800 2026] [security2:error] [pid 1030:tid 1034] [client 34.180.40.48:43372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catslife.net"] [uri "/web/.git/config"] [unique_id "ai5IvUZL6_k-earW4jvlDAAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-14 05:57:04
(14 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-14 05:45:28
(15 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-14 05:28:58
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 01:28:49.379299 2026] [security2:error] [pid 16345:tid 16345] [client 34.180.40.48:35548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wurkroom.biz.smartstylehair.com"] [uri "/.git/config"] [unique_id "ai48EbT0SSOgCJDTWTnSTwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 04:58:28
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 00:58:24.113578 2026] [security2:error] [pid 7130:tid 7130] [client 34.180.40.48:37672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rxrepconnect.circlehealthcaregroup.com"] [uri "/htdocs/.git/config"] [unique_id "ai408JntmCevmtwdP06v7AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-14 04:23:13
(16 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 03:59:16
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.180.40.48 (48.40.180.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 23:59:09.166037 2026] [security2:error] [pid 14563:tid 14563] [client 34.180.40.48:57206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calebmukinyo.xyz.illumoonatedtarot.com"] [uri "/wp-content/.git/config"] [unique_id "ai4nDTurPYa9tQLmnGj7uwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-06-14 03:52:55
(16 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-stl2-13)
Hacking
Web App Attack