๐ณ๐ฑ
homeshowdomain.nl
2026-05-23 22:00:34
(3 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-22.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-22 19:06:34
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 15:06:27.310204 2026] [security2:error] [pid 19905:tid 19905] [client 34.62.88.242:33800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "w-c-p-m.com"] [uri "/.git/config"] [unique_id "ahCpM8Dzjimf-z4SqRoK9wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-22 17:05:02
(3 weeks ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 13:53:39
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:53:31.718160 2026] [security2:error] [pid 4801:tid 4801] [client 34.62.88.242:37876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deathofaspy.com"] [uri "/.git/config"] [unique_id "ahBf2xfi5RNVdOduwOEIiwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-05-22 13:53:32
(3 weeks ago)
[Fri May 22 23:53:31.512697 2026] [security2:error] [pid 735024] [client 34.62.88.242:44626] [client ...
show more
[Fri May 22 23:53:31.512697 2026] [security2:error] [pid 735024] [client 34.62.88.242:44626] [client 34.62.88.242] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "bermanfamily.com.au"] [uri "/.git/config"] [unique_id "ahBf25xR3mN4S-k9a1p0vwAAAAU"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 13:30:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:30:01.218056 2026] [security2:error] [pid 23061:tid 23061] [client 34.62.88.242:56568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bearssd.org"] [uri "/.git/config"] [unique_id "ahBaWQ2J60tXgouxoBJtqAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 12:27:33
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:27:30.351337 2026] [security2:error] [pid 3558:tid 3558] [client 34.62.88.242:54526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "allautousa.com"] [uri "/.git/config"] [unique_id "ahBLsvKRL-OTNZtE_-8jigAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 09:11:51
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.88.242 (242.88.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 05:11:45.205004 2026] [security2:error] [pid 23256:tid 23256] [client 34.62.88.242:45300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.carepage.pro"] [uri "/.git/config"] [unique_id "ahAd0a214ckRurw8U9ASkQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-22 09:05:42
(3 weeks ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-05-22 03:15:06
(3 weeks ago)
categories: DDoS Attack
DDoS Attack
๐ท๐บ
DZBOT
2026-05-22 01:14:15
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
crooze.net
2026-05-20 10:05:47
(4 weeks ago)
34.62.88.242 - - [20/May/2026:10:05:46 +0000] "\x16\x03\x01\x05\xDE\x01\x00\x05\xDA\x03\x03\x9A\x08\ ...
show more
34.62.88.242 - - [20/May/2026:10:05:46 +0000] "\x16\x03\x01\x05\xDE\x01\x00\x05\xDA\x03\x03\x9A\x08\x15.\x9C%\xF4\xB2R\xB0\xB9;?\xA9\xB2/us[\xE5\x96\xCD\x17U\xA7\xF7\x00\xC1\xAD>D, t\xACk\xC4\x1E\x91z\x9Af\x99F_t\xAB?\x0C\xABmJ`" 400 150 "-" "-"
...
show less
Hacking
Web App Attack
๐ฌ๐ง
PeravixGroup
2026-05-20 09:30:27
(4 weeks ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot