๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:01:54
(3 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 14:48:27
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:48:21.984306 2026] [security2:error] [pid 32166:tid 32166] [client 34.23.48.85:44824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "winwin.albionglobalmarketing.com"] [uri "/.git/config"] [unique_id "aigntb-9cwaEGSwwXwPqOwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-06-09 13:02:53
(3 days ago)
Accessed trap at '/.git/config'
Web App Attack
๐ฉ๐ช
4server
2026-06-09 11:49:09
(4 days ago)
[TueJun0913:49:03.4678222026][security2:error][pid2865635:tid2865699][client34.23.48.85:0]ModSecurit ...
show more
[TueJun0913:49:03.4678222026][security2:error][pid2865635:tid2865699][client34.23.48.85:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.gmint.ch\"][uri\"/.git/config\"][unique_id\"aif9rwi8Efg33Thf8hiTHwAAAFg\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:07:59
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:07:51.697036 2026] [security2:error] [pid 20190:tid 20190] [client 34.23.48.85:38574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jesuspuzzle.com"] [uri "/.git/config"] [unique_id "aifl95oIOZo57-AMNvo9zgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-06-09 07:01:33
(4 days ago)
git exposure on naturologie.com/.git/config โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-09 01:53:01
(4 days ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 00:38:48
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:38:44.175074 2026] [security2:error] [pid 29070:tid 29070] [client 34.23.48.85:51500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dianedanielsmanning.com"] [uri "/.git/config"] [unique_id "aidglJhQ46a1N3nj50SUbwAAAD0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:04:35
(4 days ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking
Anonymous
2026-06-08 20:19:14
(4 days ago)
34.23.48.85 - - [09/Jun/2026:04:19:13 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (L ...
show more
34.23.48.85 - - [09/Jun/2026:04:19:13 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Linux; Android 6.0; CAM-L23) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.89 Mobile Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 19:57:48
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 15:57:42.586331 2026] [security2:error] [pid 9001:tid 9001] [client 34.23.48.85:58046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abneyfoundation.org"] [uri "/.git/config"] [unique_id "aicetpUY4sNL0bsZtIwMbQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
SilverZippo
2026-06-08 19:53:20
(4 days ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 19:17:57
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 15:17:51.810673 2026] [security2:error] [pid 15281:tid 15281] [client 34.23.48.85:35588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "honeybeeplace.com.garyrankin.com"] [uri "/.git/config"] [unique_id "aicVXw5moPU_RF-CO9yCAwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 17:35:38
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.23.48.85 (85.48.23.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:35:35.165158 2026] [security2:error] [pid 22920:tid 22920] [client 34.23.48.85:37412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "561glass.com"] [uri "/.git/config"] [unique_id "aib9Z4em3nwu3nIzMfIctgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 14:05:02
(4 days ago)
suspicious request in access.log
Web App Attack