π³π±
homeshowdomain.nl
2026-06-09 22:02:14
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
π¬π§
Oakley
2026-06-09 16:29:59
(1 week ago)
(confirmed_bot_sig) Confirmed bot
Hacking
πΊπΈ
TPI-Abuse
2026-06-09 14:08:56
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:08:51.277908 2026] [security2:error] [pid 17114:tid 17114] [client 34.24.147.212:33446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.livresanciens.fritsknuf.com"] [uri "/.git/config"] [unique_id "aigec4NleeUYnQ7UC2hsVAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
MPL
2026-06-09 11:14:54
(1 week ago)
tcp ports: 443,80 (18 or more attempts)
Port Scan
π©πͺ
4server
2026-06-09 09:37:47
(1 week ago)
[TueJun0911:37:44.9982762026][security2:error][pid2694316:tid2694452][client34.24.147.212:0]ModSecur ...
show more
[TueJun0911:37:44.9982762026][security2:error][pid2694316:tid2694452][client34.24.147.212:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.buletti-panettoni.ch\"][uri\"/.git/config\"][unique_id\"aife6J0vt9mkTG1P3-0YWAAAAJg\"]
show less
Port Scan
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 08:00:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:00:03.112049 2026] [security2:error] [pid 18505:tid 18505] [client 34.24.147.212:36068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jhuddlestonconstruction.com.savingshvac.com"] [uri "/.git/config"] [unique_id "aifIA8AGc_oBuIealjbCEwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 07:03:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:03:16.184532 2026] [security2:error] [pid 16504:tid 16504] [client 34.24.147.212:53362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agirlwithaguitar.com"] [uri "/.git/config"] [unique_id "aie6tHNLUpXlx-rry3YougAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-06-09 06:49:37
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.24.147.212 (US/United States/212.1 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.24.147.212 (US/United States/212.147.24.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
πͺπΈ
XiDeRo
2026-06-09 06:47:01
(1 week ago)
IP bloqueada por puntuaciΓ³n de karma acumulada (Guardian Web v2).
Port Scan
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 05:16:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:16:41.038979 2026] [security2:error] [pid 6094:tid 6133] [client 34.24.147.212:52984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.isignsdk.com"] [uri "/.git/config"] [unique_id "aiehubMqqZaLns5wN6h1ZwAAAEQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 04:50:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:50:12.269294 2026] [security2:error] [pid 14615:tid 14615] [client 34.24.147.212:52548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nakhltalai.ir"] [uri "/.git/config"] [unique_id "aiebhP9EOhwiAdpyIiaI7wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
GoodOldTOS
2026-06-09 03:35:01
(1 week ago)
Bad keywords detected in request: /.git/config/.git
Web App Attack
π©πͺ
FeG Deutschland
2026-06-09 02:01:01
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 00:58:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:58:26.487153 2026] [security2:error] [pid 28372:tid 28372] [client 34.24.147.212:34056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "afjm.net"] [uri "/.git/config"] [unique_id "aidlMkFy70X_xxZvKC9ltwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 00:38:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.147.212 (212.147.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:38:16.955045 2026] [security2:error] [pid 9167:tid 9167] [client 34.24.147.212:37084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "orcastrong.com"] [uri "/.git/config"] [unique_id "aidgeFf4udWmlQpFS12FxwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack