๐ณ๐ฑ
homeshowdomain.nl
2026-09-02 22:00:56
(1 hour ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-01.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 13:24:33
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:24:27.316351 2026] [security2:error] [pid 4762:tid 4762] [client 34.77.251.101:38490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kmashburn.com"] [uri "/src/.git/config"] [unique_id "apgji-epZQQ06sRBLtBguwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-02 12:09:30
(11 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 10:18:57
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 06:18:51.727324 2026] [security2:error] [pid 19593:tid 19593] [client 34.77.251.101:57704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "syvox.nashes.net"] [uri "/html/.git/config"] [unique_id "apf4C21AGJLL-9qgUE_P7gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 08:20:41
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:20:35.408180 2026] [security2:error] [pid 27682:tid 27682] [client 34.77.251.101:44434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rotentendales.aticom.es"] [uri "/.git/config"] [unique_id "apfcUxNwsbHKse5hzP6gmwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 08:07:05
(15 hours ago)
Automated web scanner. Requested suspicious paths: /app/.git/config. UTC: 2026-09-02 07:51:09.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:28:19
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:28:10.819580 2026] [security2:error] [pid 8093:tid 8093] [client 34.77.251.101:45726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "register-yacht-marshall-islands.com"] [uri "/var/www/.git/config"] [unique_id "apfQCjvyR4OaqjPOpXuUZAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:09:28
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:09:22.148224 2026] [security2:error] [pid 19679:tid 19679] [client 34.77.251.101:58250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bigheartskitchen.com"] [uri "/site/.git/config"] [unique_id "ape9ktCnyefetinADjUqewAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:27:09
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:27:05.249118 2026] [security2:error] [pid 25237:tid 25237] [client 34.77.251.101:33308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hollyndlaw.com"] [uri "/backend/.git/config"] [unique_id "apezqVfIbJHxJNvONWi2pQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-02 05:20:20
(18 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-02 05:17:27
(18 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.77.251.101 (BE/Belgium/101.251.77.34.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 34.77.251.101 (BE/Belgium/101.251.77.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 05:06:57
(18 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.77.251.101 (BE/Belgium/101.251.77. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.77.251.101 (BE/Belgium/101.251.77.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
LRob
2026-09-02 03:46:59
(19 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /app/.git/config (+10 more) | 2026-09-02 03:46 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 00:09:26
(23 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 22:56:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.251.101 (101.251.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 18:55:59.921656 2026] [security2:error] [pid 9945:tid 9945] [client 34.77.251.101:58752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travel-pix.com"] [uri "/site/.git/config"] [unique_id "apdX_4X05YD_R76P7RCY5gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack