๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:03:12
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ฐ
ScamAware
2026-06-09 11:24:46
(1 week ago)
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensiti ...
show more
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensitive files, source control, config, and backups). Hits from same IP in last 60 minutes: 1. Unique request paths counted internally: 1. Cloudflare action: block. Cloudflare source: firewallCustom.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:13:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:13:30.332222 2026] [security2:error] [pid 18281:tid 18281] [client 34.24.84.223:56870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "baldventure.com.tomthomasplumbing.com"] [uri "/.git/config"] [unique_id "aif1WkohZxQAao8D3fVnjQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:46:14
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:46:09.537479 2026] [security2:error] [pid 22164:tid 22164] [client 34.24.84.223:54100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sirclive.com.cosentient.com"] [uri "/.git/config"] [unique_id "aifu8aZas6geLdPXhojYMQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2026-06-09 10:15:53
(1 week ago)
joe-17 : Block hidden directories=>/.git/config(/)
Hacking
๐ฆ๐บ
2000cn.com.au
2026-06-09 10:07:32
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 09:53:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:53:04.984313 2026] [security2:error] [pid 1535:tid 1535] [client 34.24.84.223:58844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newsite.wizind.com"] [uri "/.git/config"] [unique_id "aifigNGsPpoXvBV55y4mggAAAHE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:14:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:14:25.621780 2026] [security2:error] [pid 1450:tid 1450] [client 34.24.84.223:51670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rjdyckarchitect.com"] [uri "/.git/config"] [unique_id "aie9UV4q37lJ9fsiwik3igAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-09 04:34:12
(1 week ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.24.84.223 (US/United States/223. ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.24.84.223 (US/United States/223.84.24.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:00:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:00:36.325981 2026] [security2:error] [pid 395:tid 395] [client 34.24.84.223:54248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "imagesbyaubrey.com"] [uri "/.git/config"] [unique_id "aieP5BryGKOTHe4rLTsUyQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Oakley
2026-06-09 03:49:28
(1 week ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 02:01:46
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:01:41.394717 2026] [security2:error] [pid 19315:tid 19327] [client 34.24.84.223:51304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.metastrata.plumeraproductions.com"] [uri "/.git/config"] [unique_id "aid0BcIHEskT7xcpsAfmmAAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:10:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.84.223 (223.84.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:10:36.731430 2026] [security2:error] [pid 9422:tid 9422] [client 34.24.84.223:55572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "starsmogsandiego.com"] [uri "/.git/config"] [unique_id "aidoDE1MSK3gKHfmirji-AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 00:31:05
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.24.84.223 (US/United States/223.84 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.24.84.223 (US/United States/223.84.24.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:02:47
(1 week ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking