🇳🇱
homeshowdomain.nl
2026-09-08 22:01:19
(16 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-07.
show less
Web App Attack
SSH
Hacking
Anonymous
2026-09-07 21:02:01
(1 day ago)
[_admin] cross-host-offender: auto: cross-host offender — banned on 3 hosts [httpd-config-scan]
Hacking
Web App Attack
🇧🇪
cmbplf
2026-09-07 18:58:47
(1 day ago)
536 requests with url.path */.git/config
253 requests with url.path *.git/*
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 18:43:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:43:35.314035 2026] [security2:error] [pid 24695:tid 24695] [client 34.6.9.234:58126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aemcmullin.com"] [uri "/.git/config"] [unique_id "ap8F1ypRr0vPoKOcEfA0OwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-07 18:43:06
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2026-09-07 18:39:41
(1 day ago)
[ssd5.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/.git/config
Hacking
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-07 18:31:13
(1 day ago)
[07/Sep/2026:21:31:13 +0300] -- 34.6.9.234 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/co ...
show more
[07/Sep/2026:21:31:13 +0300] -- 34.6.9.234 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇦🇺
2000cn.com.au
2026-09-07 18:27:45
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-07 18:20:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:20:29.630148 2026] [security2:error] [pid 8835:tid 8835] [client 34.6.9.234:39532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ae5cp.kreweofhyatt.com"] [uri "/.git/config"] [unique_id "ap8AbdccYu-8rU9oMuLFggAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
FireGuard Server
2026-09-07 18:05:04
(1 day ago)
Blocked by os-abuseipdb; 3 hits, proto=tcp, ports=443
Port Scan
Hacking
🇺🇸
TPI-Abuse
2026-09-07 17:56:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:56:15.323638 2026] [security2:error] [pid 16610:tid 16610] [client 34.6.9.234:60034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advisorstudios.cms2020.com"] [uri "/.git/config"] [unique_id "ap76v1ME7oXPIv7MEM8vmQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-09-07 17:53:01
(1 day ago)
Try to access /.git/config
Web App Attack
Anonymous
2026-09-07 17:45:02
(1 day ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:31:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:31:09.026793 2026] [security2:error] [pid 12593:tid 12593] [client 34.6.9.234:56934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advantagebrandservices.advantageinvestigation.com"] [uri "/.git/config"] [unique_id "ap703dZNBH49-TTdeLUPKwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:14:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.6.9.234 (234.9.6.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:14:00.042143 2026] [security2:error] [pid 17796:tid 17796] [client 34.6.9.234:41770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adults-biz.com"] [uri "/.git/config"] [unique_id "ap7w2Fsc80S0gbqiAJ8y4QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack