🇳🇱
homeshowdomain.nl
2026-09-04 21:59:37
(21 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-03.
show less
Web App Attack
SSH
Hacking
🇩🇪
pltcldvlpr
2026-09-04 15:43:49
(1 day ago)
CMS/framework probe: 34.65.73.225 - - [04/Sep/2026:17:43:48 +0200] "GET /.git/config HTTP/1.1" 444 0 ...
show more
CMS/framework probe: 34.65.73.225 - - [04/Sep/2026:17:43:48 +0200] "GET /.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0" asn=396982 org="Google LLC" country=CH
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:34:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:34:06.013496 2026] [security2:error] [pid 29791:tid 29791] [client 34.65.73.225:40830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sermonofsong.talkingmess.com"] [uri "/backend/.git/config"] [unique_id "apqsrn_uuXmMm176qB1M-AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 09:03:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:03:47.336448 2026] [security2:error] [pid 26007:tid 26007] [client 34.65.73.225:44200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "guardmagic.com"] [uri "/site/.git/config"] [unique_id "apqJc_yh78iXh5UKCV5-MgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
raph
2026-09-04 05:37:32
(1 day ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 04:54:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:54:46.942392 2026] [security2:error] [pid 15708:tid 15708] [client 34.65.73.225:35782] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.stonetarot.com"] [uri "/api/.git/config"] [unique_id "appPFtXSWrG33r4VEbZZjAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 04:33:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:33:46.422568 2026] [security2:error] [pid 1060:tid 1060] [client 34.65.73.225:33194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.floorsanding.org"] [uri "/src/.git/config"] [unique_id "appKKpj_zMh2taitvLh3RQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Philister11
2026-09-04 01:16:33
(1 day ago)
CrowdSec: crowdsecurity/http-probing (CH/AS396982)
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 00:55:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 20:55:07.751797 2026] [security2:error] [pid 19862:tid 19862] [client 34.65.73.225:51256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fingershrine.kmp.net"] [uri "/backend/.git/config"] [unique_id "apoW6yJkPDnfBBZ4tvKw4gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ghostwarriors
2026-09-03 22:50:14
(1 day ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 21:56:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.73.225 (225.73.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 17:56:18.777827 2026] [security2:error] [pid 21492:tid 21492] [client 34.65.73.225:32958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taskmasterstech.com"] [uri "/src/.git/config"] [unique_id "apntAksvexZDxUnpfhc17wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
XICTRON
2026-09-03 19:10:06
(2 days ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
🇳🇱
e.fierstra
2026-09-03 18:04:05
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 16:40:01
(2 days ago)
suspicious request in access.log
Web App Attack
🇬🇧
consul.to
2026-09-03 14:43:16
(2 days ago)
Web attack/malicious scanning detected
Web App Attack