๐ณ๐ฑ
homeshowdomain.nl
2026-06-10 21:59:44
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-09.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:02:53
(1 week ago)
Auto-ban: >3000 req/min op 2026-06-09
Web App Attack
SSH
Hacking
๐ฎ๐ฉ
Burayot
2026-06-09 14:09:25
(1 week ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.40.235.39 (AU/Australia/39.235.4 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.40.235.39 (AU/Australia/39.235.40.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
Anonymous
2026-06-09 11:43:06
(1 week ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:22:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:22:24.733493 2026] [security2:error] [pid 26861:tid 26888] [client 34.40.235.39:33440] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "computeinitiative.org"] [uri "/.git/config"] [unique_id "aif3cCtr9lIys2oTLsvYogAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 08:52:27
(1 week ago)
34.40.235.39 - - [09/Jun/2026:08:52:26 +0000] "GET /.git/config HTTP/1.1" 404 2815 "-" "Mozilla/5.0 ...
show more
34.40.235.39 - - [09/Jun/2026:08:52:26 +0000] "GET /.git/config HTTP/1.1" 404 2815 "-" "Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_7; en-us) AppleWebKit/534.20.8 (KHTML, like Gecko) Version/5.1 Safari/534.20.8"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:50:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:50:35.187410 2026] [security2:error] [pid 8527:tid 8527] [client 34.40.235.39:37796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.velocitymech.com.jbcllcnet.com"] [uri "/.git/config"] [unique_id "aifT2zO6kPV68aBoIQme4gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-06-09 07:31:06
(1 week ago)
34.40.235.39 - - [09/Jun/2026:09:31:02 +0200] "GET /.git/config HTTP/1.1" 403 3821 "-" "Mozilla/5.0 ...
show more
34.40.235.39 - - [09/Jun/2026:09:31:02 +0200] "GET /.git/config HTTP/1.1" 403 3821 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.145 Safari/537.36 Vivaldi/2.6.1566.49"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
EDSL
2026-06-09 07:16:35
(1 week ago)
[mail.edsl.fr] Blocked by SysWarden Firewall (Web Attack)
Web App Attack
Hacking
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-09 07:09:29
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:09:24.781184 2026] [security2:error] [pid 21282:tid 21306] [client 34.40.235.39:35420] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flapjacktoys.com"] [uri "/.git/config"] [unique_id "aie8JEJR_uUk_ODZOlgQzQAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:15:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:15:50.868540 2026] [security2:error] [pid 1234:tid 1234] [client 34.40.235.39:45690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lundtrading.com"] [uri "/.git/config"] [unique_id "aieFZkQRZ-t7wr1n5WO9WgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:53:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:53:47.755854 2026] [security2:error] [pid 6912:tid 6912] [client 34.40.235.39:43330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cornerstonecharitablescholarshiptrust.org"] [uri "/.git/config"] [unique_id "aieAO7DUx5Phut5cEaiWowAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:16:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:16:06.245937 2026] [security2:error] [pid 3414:tid 3414] [client 34.40.235.39:39516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.formationone.com"] [uri "/.git/config"] [unique_id "aidpVglE6h-AtHe54D81bgAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 18:43:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.235.39 (39.235.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 14:43:49.184658 2026] [security2:error] [pid 27559:tid 27559] [client 34.40.235.39:48638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.woahmanatee.robertmcatee.com"] [uri "/api/v2/.env"] [unique_id "aicNZa06QEenyB0jpwlPSwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-08 16:55:13
(1 week ago)
[MonJun0818:55:06.9298232026][security2:error][pid925126:tid925378][client34.40.235.39:0]ModSecurity ...
show more
[MonJun0818:55:06.9298232026][security2:error][pid925126:tid925378][client34.40.235.39:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.endlesspoolsticino.ch.81-17-25-250.cpanel.site\"][uri\"/.env.prod.bak\"][unique_id\"aibz6tzxaGgJ_Q6QKHjqnAAAAIc\"]
show less
Hacking
Web App Attack