๐ณ๐ฑ
homeshowdomain.nl
2026-09-10 22:00:31
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-09.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-09 15:18:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 11:18:24.234221 2026] [security2:error] [pid 27664:tid 27664] [client 34.182.164.13:49830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "justjunglejuice.org"] [uri "/.git/config"] [unique_id "aqF4wE83rKRbUbS1MnG9ggAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 14:11:56
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 10:11:51.720181 2026] [security2:error] [pid 25291:tid 25291] [client 34.182.164.13:41532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "justicehoward.com"] [uri "/.git/config"] [unique_id "aqFpJ3DeJbKys71SKNTy0wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-09 13:55:41
(2 weeks ago)
34.182.164.13 - - [09/Sep/2026:09:55:41 -0400] "GET /.env HTTP/1.1" 403 6309 "-" "Mozilla/5.0 (Macin ...
show more
34.182.164.13 - - [09/Sep/2026:09:55:41 -0400] "GET /.env HTTP/1.1" 403 6309 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ssssssssssssssssssssuper
2026-09-09 12:56:18
(2 weeks ago)
34.182.164.13 - - [09/Sep/2026:08:56:15 -0400] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 ...
show more
34.182.164.13 - - [09/Sep/2026:08:56:15 -0400] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.182.164.13 - - [09/Sep/2026:08:56:17 -0400] "GET /.env HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.182.164.13 - - [09/Sep/2026:08:56:18 -0400] "GET /.env.local HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-09 10:28:41
(2 weeks ago)
12.709 requests with url.path *.env
1.848 requests with url.path *phpinfo.php
356 requests with u ...
show more
12.709 requests with url.path *.env
1.848 requests with url.path *phpinfo.php
356 requests with url.path *credentials.json
162 requests with url.path *.php.bak
show less
Brute-Force
Bad Web Bot
Anonymous
2026-09-09 09:07:42
(2 weeks ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐ซ๐ท
masterguru
2026-09-09 08:52:23
(2 weeks ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-09 08:50:03
(2 weeks ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-09 07:39:37
(2 weeks ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
Charlesiv
2026-09-09 06:01:07
(2 weeks ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 396982 (Goog ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /keyfile.json
Timestamp: 2026-09-09T05:56:55Z
Ray ID: a383f3d45a6ec983
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot
๐จ๐ญ
zynex
2026-09-09 05:12:48
(2 weeks ago)
URL Probing: /frontend/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 04:14:55
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 00:14:46.684200 2026] [security2:error] [pid 29780:tid 29780] [client 34.182.164.13:34906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juncurryahn.com"] [uri "/.git/config"] [unique_id "aqDdNk9t2US3l5vTYgC7MAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-06 15:48:43
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.182.164.13 (13.164.182.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 11:48:36.677200 2026] [security2:error] [pid 801:tid 801] [client 34.182.164.13:53858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "intimeguards.com.americannetsecurity.com"] [uri "/.git/config"] [unique_id "ap2LVDtDsrhJCHyTTrdmJAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-06 14:50:03
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack