๐จ๐ญ
TheCoon
2026-06-10 17:30:01
(1 week ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:03:40
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 15:31:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:31:16.303294 2026] [security2:error] [pid 13480:tid 13480] [client 34.40.163.40:49972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ferrarapanent.com"] [uri "/.git/config"] [unique_id "aigxxM4W7SdbMEDdgiQzZgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 13:22:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:22:23.953684 2026] [security2:error] [pid 20362:tid 20362] [client 34.40.163.40:53038] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jeremy-olson.com.mngop47.org"] [uri "/.git/config"] [unique_id "aigTjxtQhsixOYnIzUw_5gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:36:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:36:33.687771 2026] [security2:error] [pid 16518:tid 16518] [client 34.40.163.40:47706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vanessawyll.com.vanemby.com"] [uri "/.git/config"] [unique_id "aifeoTSWHP0upTtQR0A-XAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-09 06:51:31
(1 week ago)
[TueJun0908:51:26.1746232026][security2:error][pid4031296:tid4031802][client34.40.163.40:0]ModSecuri ...
show more
[TueJun0908:51:26.1746232026][security2:error][pid4031296:tid4031802][client34.40.163.40:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.hosting-domain-swiss-ch.ticino-hosting.ch\"][uri\"/.git/config\"][unique_id\"aie37m58BKZM_8dTg8G2tAAAAMk\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:27:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:27:22.858385 2026] [security2:error] [pid 12853:tid 12853] [client 34.40.163.40:47118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marcelacalvet.com"] [uri "/.git/config"] [unique_id "aieySrdw35cL8d16O82WHgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:07:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:07:46.369659 2026] [security2:error] [pid 4555:tid 4555] [client 34.40.163.40:38320] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tcomputerguy.com"] [uri "/.git/config"] [unique_id "aietsmDIoG4gcT8pmd61qwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-09 05:27:08
(1 week ago)
[TueJun0907:27:02.2116482026][security2:error][pid2416160:tid2416249][client34.40.163.40:0]ModSecuri ...
show more
[TueJun0907:27:02.2116482026][security2:error][pid2416160:tid2416249][client34.40.163.40:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"ilcartiglio.ch\"][uri\"/.git/config\"][unique_id\"aiekJmGHdk8HILZ5NUNhpQAAAIo\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:11:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:11:37.893676 2026] [security2:error] [pid 10499:tid 10499] [client 34.40.163.40:33016] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "solve4this.com"] [uri "/.git/config"] [unique_id "aiegiWowJQNeTRSs8ZLNywAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:21:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:21:39.633356 2026] [security2:error] [pid 11744:tid 11750] [client 34.40.163.40:40786] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elevapro.com"] [uri "/.git/config"] [unique_id "aieU03MtEEsBcLWpBg3MjgAAAMQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ParaBug
2026-06-09 02:50:16
(1 week ago)
34.40.163.40 - - [09/Jun/2026:04:50:16 +0200] "GET /.git/config HTTP/1.1" 301 3317 "-" "Mozilla/5.0 ...
show more
34.40.163.40 - - [09/Jun/2026:04:50:16 +0200] "GET /.git/config HTTP/1.1" 301 3317 "-" "Mozilla/5.0 (Linux; Android 9; SM-A530W) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:28:43
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.163.40 (40.163.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:28:38.043121 2026] [security2:error] [pid 10056:tid 10056] [client 34.40.163.40:35476] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.3rddprints.bridgital.com"] [uri "/.git/config"] [unique_id "aid6Vue3lDqbnCN8ADDTgwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Progetto1
2026-06-09 01:50:04
(2 weeks ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-06-09 01:48:05
(2 weeks ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack