๐ช๐ธ
Gem
2026-06-13 05:59:38
(1 week ago)
Unauthorized web scan.
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:00:45
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 16:18:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:18:48.621547 2026] [security2:error] [pid 12243:tid 12243] [client 34.63.122.188:60120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.orlando-windsor-villa.com.robin5on.com"] [uri "/.git/config"] [unique_id "aig86I0UTRg_A2i7ewOuwAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-09 15:33:46
(1 week ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:22:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:22:49.051233 2026] [security2:error] [pid 14326:tid 14340] [client 34.63.122.188:51262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.annthornycroft.com"] [uri "/.git/config"] [unique_id "aigvydl-gtKpK_MPLyv9ogAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 14:40:17
(1 week ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 14:15:09
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:15:01.756223 2026] [security2:error] [pid 5091:tid 5091] [client 34.63.122.188:43858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.capitallawgroup.progressivefileshare.org"] [uri "/.git/config"] [unique_id "aigf5Yv5xaPMjrx23lyKiQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:52:43
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:52:37.068304 2026] [security2:error] [pid 604:tid 640] [client 34.63.122.188:41250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "citydentalclinic.com"] [uri "/.git/config"] [unique_id "aif-hWmaSY1mHuCzp4D_IgAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:46:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:46:56.356068 2026] [security2:error] [pid 901:tid 901] [client 34.63.122.188:44414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bullsalerts.com"] [uri "/.git/config"] [unique_id "aifvIEfkKFeETFofTEfwKAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 10:22:56
(2 weeks ago)
34.63.122.188 - - [09/Jun/2026:07:22:55 -0300] "GET /.git/config HTTP/1.1" 403 153 "-" "Screaming Fr ...
show more
34.63.122.188 - - [09/Jun/2026:07:22:55 -0300] "GET /.git/config HTTP/1.1" 403 153 "-" "Screaming Frog SEO Spider/8.1"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐จ๐ฆ
TechnoSolutions CL
2026-06-09 09:41:05
(2 weeks ago)
34.63.122.188 - - [09/Jun/2026:09:41:01 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (L ...
show more
34.63.122.188 - - [09/Jun/2026:09:41:01 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Linux; U; Android 3.0.1; en-us; GT-P7100 Build/HRI83) AppleWebkit/534.13 (KHTML, like Gecko) Version/4.0 Safari/534.13"
34.63.122.188 - - [09/Jun/2026:09:41:04 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/71.0.3578.89 Mobile/15E148 Safari/605.1"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 07:50:02
(2 weeks ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:52:03
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:51:56.908916 2026] [security2:error] [pid 19754:tid 19754] [client 34.63.122.188:45882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.4lazy.com"] [uri "/.git/config"] [unique_id "aie4DKNDbioewCHyYbRDyAAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Oakley
2026-06-09 06:42:20
(2 weeks ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 05:37:19
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.122.188 (188.122.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:37:15.794181 2026] [security2:error] [pid 27035:tid 27035] [client 34.63.122.188:57820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wordandwisdom.org"] [uri "/.git/config"] [unique_id "aiemi66N_BKUJhvozBtWAQAAAGU"]
show less
Brute-Force
Bad Web Bot
Web App Attack