๐บ๐ธ
theanalogmaker
2026-06-15 00:00:43
(1 week ago)
CrowdSec: AbuseIPDB 86% (SG, 31 reports) (720h ban)
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-10 22:00:07
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-09.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
theanalogmaker
2026-06-10 11:15:36
(2 weeks ago)
CrowdSec: AbuseIPDB 94% (SG, 29 reports) (2160h ban)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 16:13:56
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:13:52.749017 2026] [security2:error] [pid 2630:tid 2630] [client 34.21.224.14:52610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vintageamptubes.com"] [uri "/.git/config"] [unique_id "aig7wL5RA3P-vEuumhv6aQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
zulzeen
2026-06-09 15:41:12
(2 weeks ago)
[incypit-web] Banned by Fail2ban (Jail: syswarden-secretshunter)
Hacking
Web App Attack
Bad Web Bot
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-09 15:28:58
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:28:51.110344 2026] [security2:error] [pid 8940:tid 8940] [client 34.21.224.14:36684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "saratogaequity.com.martintommer.com"] [uri "/.git/config"] [unique_id "aigxM-Eoq_KlmuBf9wMcmQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 14:10:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:10:02.894395 2026] [security2:error] [pid 13340:tid 13340] [client 34.21.224.14:33622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.remindacap.com.ramoundos.com"] [uri "/.git/config"] [unique_id "aigeuuNZ4X3qWvnkurtVpwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
WinnieHoneypots
2026-06-09 12:01:03
(2 weeks ago)
Crappy bot probing nonexistent /.git/config
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
theanalogmaker
2026-06-09 11:00:45
(2 weeks ago)
CrowdSec: Symphony auto-ban: /.env.prod.bak (100.0% confidence) (720h ban)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:09:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:09:11.813055 2026] [security2:error] [pid 26861:tid 26883] [client 34.21.224.14:50874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davidchapa.com.104ventures.com"] [uri "/.git/config"] [unique_id "aifmRytr9lIys2oTLsvLagAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-09 09:51:59
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:02:03
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:01:56.390028 2026] [security2:error] [pid 10233:tid 10233] [client 34.21.224.14:33568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "neathridge.com"] [uri "/.git/config"] [unique_id "aifIdO_yCMX3oPK-1shztQAAAHQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 07:08:26
(2 weeks ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:17:02
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:16:56.803905 2026] [security2:error] [pid 25132:tid 25132] [client 34.21.224.14:39490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.asapsmogcheck.smogsandiego.com"] [uri "/.git/config"] [unique_id "aiev2PYVxNz7pmMLHHmruAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:47:05
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.224.14 (14.224.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:46:57.267493 2026] [security2:error] [pid 11526:tid 11526] [client 34.21.224.14:48234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hughhart.com"] [uri "/.git/config"] [unique_id "aieawevvL1cwT5MTCEV-fQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack