๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:03:44
(4 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-13.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-13 22:05:44
(5 days ago)
Auto-ban: >3000 req/min op 2026-06-13
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-13 17:23:49
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 13:23:42.241969 2026] [security2:error] [pid 15046:tid 15046] [client 34.40.248.19:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.luisguacache.com"] [uri "/.git/config"] [unique_id "ai2SHr4i9IV4Hvu6gNK8xQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 17:08:40
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 13:08:36.503265 2026] [security2:error] [pid 32724:tid 32724] [client 34.40.248.19:41282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "salazartransfers.com"] [uri "/.git/config"] [unique_id "ai2OlPTcaFYasauRsioifgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 16:31:59
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 12:31:56.054867 2026] [security2:error] [pid 4069:tid 4069] [client 34.40.248.19:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.wiszen.org"] [uri "/.git/config"] [unique_id "ai2F_EcMItIM9Jcr72zjWwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-13 16:23:07
(6 days ago)
[SatJun1318:23:04.6790402026][security2:error][pid1365351:tid1365463][client34.40.248.19:0]ModSecuri ...
show more
[SatJun1318:23:04.6790402026][security2:error][pid1365351:tid1365463][client34.40.248.19:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"thilyatecnologie.ch\"][uri\"/.git/config\"][unique_id\"ai2D6B7udvqp2aiptaa1wwAAAQk\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-06-13 11:55:02
(6 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 11:52:32
(6 days ago)
(mod_security) mod_security (id:949110) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 07:52:28.247203 2026] [security2:error] [pid 25276:tid 25276] [client 34.40.248.19:42818] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.tsmdsc.cescfoundation.org"] [uri "/.git/config"] [unique_id "ai1EfPaq_kdO24LOSTUfbwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
etu brutus
2026-06-13 11:46:03
(6 days ago)
34.40.248.19 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-13 07:43:27
(6 days ago)
[SatJun1309:43:23.5558822026][security2:error][pid171416:tid171684][client34.40.248.19:0]ModSecurity ...
show more
[SatJun1309:43:23.5558822026][security2:error][pid171416:tid171684][client34.40.248.19:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"4server.biz\"][uri\"/.git/config\"][unique_id\"ai0KGztBRE9zj_Mcg9xpgAAAAMo\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-13 07:08:58
(6 days ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
mnsf
2026-06-13 07:07:03
(6 days ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 07:00:13
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 03:00:06.070315 2026] [security2:error] [pid 6166:tid 6166] [client 34.40.248.19:57552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lphalloweenparty.joesteiner.com"] [uri "/.git/config"] [unique_id "aiz_9g6AZT4jOd05ZFQNMgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 06:35:36
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.248.19 (19.248.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:35:27.981620 2026] [security2:error] [pid 12874:tid 12874] [client 34.40.248.19:54808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "es.nagareinkpaper.ahijado.org"] [uri "/.git/config"] [unique_id "aiz6L5H4f9KOQoTMMGdJ8gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2026-06-13 06:32:24
(6 days ago)
Web attack from 34.40.248.19
Web App Attack