๐จ๐ญ
TheCoon
2026-06-10 21:45:01
(2 weeks ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐ง๐ช
sid3windr
2026-06-10 16:27:56
(2 weeks ago)
GET /.git/config (Tarpitted for 1d15h8m28s, wasted 8.06MB)
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:02:47
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 16:27:35
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:27:29.924422 2026] [security2:error] [pid 11900:tid 11900] [client 34.24.186.171:43578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxwetdenim.grayhost.net"] [uri "/.git/config"] [unique_id "aig-8eMxqc0VTLUhr3E-XQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
Block Rockin' Beats
2026-06-09 14:27:03
(2 weeks ago)
Scanning for exploitable scripts
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 13:48:04
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:47:59.297152 2026] [security2:error] [pid 11511:tid 11511] [client 34.24.186.171:51068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "capassoart.com"] [uri "/.git/config"] [unique_id "aigZj_0hEMyQB435ji7KcAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:34:13
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:34:05.538165 2026] [security2:error] [pid 31135:tid 31135] [client 34.24.186.171:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.c2cservices.com"] [uri "/.git/config"] [unique_id "aigIPa4OEE6qJZYEKuEWlQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:24:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:24:34.198599 2026] [security2:error] [pid 32284:tid 32284] [client 34.24.186.171:40954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.taptaptennis.abecasis.com"] [uri "/.git/config"] [unique_id "aifb0lFnA9Q3PfHg1MLa4QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2026-06-09 08:54:57
(2 weeks ago)
Web attack from 34.24.186.171
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:57:37
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:57:31.940791 2026] [security2:error] [pid 12202:tid 12202] [client 34.24.186.171:52806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "itecsis.com"] [uri "/.git/config"] [unique_id "aifHa6d1drSCNTsUPkmLZQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:07:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:07:41.617397 2026] [security2:error] [pid 8369:tid 8369] [client 34.24.186.171:52526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.seoanalyticslocal.kevinfranz.com"] [uri "/.git/config"] [unique_id "aie7vYvYWJ4Of8Lcvm2SmwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 07:06:39
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.24.186.171 (US/United States/171.1 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.24.186.171 (US/United States/171.186.24.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 06:47:21
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.186.171 (171.186.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:47:13.288621 2026] [security2:error] [pid 17979:tid 17979] [client 34.24.186.171:54324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newcastle91.org"] [uri "/.git/config"] [unique_id "aie28ZNZ2MKT9O848hwF6wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Roper123
2026-06-09 04:26:00
(2 weeks ago)
Web exploits
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:01:59
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking