๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:00:53
(7 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-26.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 18:34:20
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:34:13.791706 2026] [security2:error] [pid 23247:tid 23247] [client 34.77.76.238:48218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gmp-ts.com"] [uri "/backend/.git/config"] [unique_id "apCDJbxgTCAWVg3Y98hbJQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 18:20:04
(11 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:24:33
(13 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:24:25.556493 2026] [security2:error] [pid 29453:tid 29453] [client 34.77.76.238:37044] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.letahitibookings.hamiltonbookings.com"] [uri "/.git/config"] [unique_id "apBkuYxU6y0OYJgL0mavZgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-27 15:53:10
(13 hours ago)
Try to access /site/.git/config
Web App Attack
๐ฉ๐ช
CK_beats
2026-08-27 15:05:06
(14 hours ago)
Blocked by os-abuseipdb on OPNsense firewall KN-FW01; 84 hits, proto=tcp, ports=80
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 15:01:03
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:00:55.562025 2026] [security2:error] [pid 12037:tid 12037] [client 34.77.76.238:60552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sutherlandyogastudio.com"] [uri "/.git/config"] [unique_id "apBRJzSM-9ChFrOGPhzk4wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
iulianh
2026-08-27 14:19:49
(15 hours ago)
80,443
Brute-Force
SSH
Anonymous
2026-08-27 14:06:08
(15 hours ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 13:14:45
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:14:36.771376 2026] [security2:error] [pid 11583:tid 11583] [client 34.77.76.238:55160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.asian-aerospace.christinepeat.com"] [uri "/html/.git/config"] [unique_id "apA4PEGEKg1Yuhg7DbocLQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:51:47
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:51:39.470907 2026] [security2:error] [pid 32518:tid 32518] [client 34.77.76.238:47308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.graphicsbyrc.zavijava.net"] [uri "/www/.git/config"] [unique_id "ao_6mwvMOnIhN9oNVnHLIQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-27 08:50:07
(21 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 07:48:06
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 03:47:59.973268 2026] [security2:error] [pid 6523:tid 6523] [client 34.77.76.238:33950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jeremyscraig.com"] [uri "/var/www/.git/config"] [unique_id "ao_rr3QtVGgHBpik7OSQ5QAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Ribeye375
2026-08-27 05:48:20
(1 day ago)
HIPS recon-attempt - Block tcp/0:65535
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:23:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.76.238 (238.76.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:23:17.545448 2026] [security2:error] [pid 21849:tid 21849] [client 34.77.76.238:58174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.truthbeam.org.amybeam.com"] [uri "/site/.git/config"] [unique_id "ao_JxT3b4df_OZy9hfR1GAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack