๐ณ๐ฑ
homeshowdomain.nl
2026-06-10 22:00:48
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-09.
show less
Web App Attack
SSH
Hacking
๐จ๐ญ
filou812
2026-06-10 12:25:23
(2 weeks ago)
url tried is "/.git/config"
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:02:25
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-06-09
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 16:10:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:10:44.156309 2026] [security2:error] [pid 25246:tid 25246] [client 34.21.212.226:51572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "assets.kanata.ws"] [uri "/.git/config"] [unique_id "aig7BGT7ATPrZSYPaPZerwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-09 15:46:14
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
4server
2026-06-09 14:01:57
(2 weeks ago)
[TueJun0916:01:53.9963412026][security2:error][pid3027689:tid3027778][client34.21.212.226:0]ModSecur ...
show more
[TueJun0916:01:53.9963412026][security2:error][pid3027689:tid3027778][client34.21.212.226:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"titancapital.ch\"][uri\"/.git/config\"][unique_id\"aigc0X1AQPqIlGxyqapkoAAAAMA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-09 14:01:51
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 13:44:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:44:35.419665 2026] [security2:error] [pid 11588:tid 11710] [client 34.21.212.226:60850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "i-masmx.com"] [uri "/.git/config"] [unique_id "aigYw4pfdIqB_CiRpSsQAgAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:07:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:07:07.898695 2026] [security2:error] [pid 17731:tid 17755] [client 34.21.212.226:49906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vcschief.pwrcoupling.com"] [uri "/.git/config"] [unique_id "aigB62zFNsvuuznmimQMzAAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:42:16
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:42:09.994571 2026] [security2:error] [pid 16721:tid 16721] [client 34.21.212.226:43622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "orlando-windsor-villa.com.robin5on.com"] [uri "/.git/config"] [unique_id "aif8EbphCfswvg2QbjeUSAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-09 10:33:17
(2 weeks ago)
25.708 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 09:40:36
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:40:29.463487 2026] [security2:error] [pid 6758:tid 6758] [client 34.21.212.226:58866] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hotdamnsam.onlyincanada-eh.com"] [uri "/.git/config"] [unique_id "aiffjTBtCjvvKtm4eiSN5QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 09:26:37
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.21.212.226 (SG/Singapore/226.212.2 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.21.212.226 (SG/Singapore/226.212.21.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 09:14:30
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:14:26.917848 2026] [security2:error] [pid 14575:tid 14575] [client 34.21.212.226:45076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.computer-advisors.com"] [uri "/.git/config"] [unique_id "aifZcjVAQ1pPiylAy06z0wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:06:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.212.226 (226.212.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:06:53.785832 2026] [security2:error] [pid 4076:tid 4076] [client 34.21.212.226:59384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yarosh.line2.biz"] [uri "/.git/config"] [unique_id "aie7jTRekeBYY7wWoSPcsgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack