๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:03:19
(5 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ง๐ช
cmbplf
2026-06-09 15:55:52
(12 hours ago)
161 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 13:29:31
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:29:26.930887 2026] [security2:error] [pid 12050:tid 12050] [client 34.85.224.34:49802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.learningbyshipping.com"] [uri "/.git/config"] [unique_id "aigVNmBJSdLhG3b-F0cWdwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 13:13:23
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:13:19.881891 2026] [security2:error] [pid 31695:tid 31695] [client 34.85.224.34:36248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kuddlkat.com"] [uri "/.git/config"] [unique_id "aigRbxIHJLaMSh2YJh7ryAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:32:42
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:32:37.634015 2026] [security2:error] [pid 24121:tid 24121] [client 34.85.224.34:36022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.robtown.com"] [uri "/.git/config"] [unique_id "aigH5R4g2IUVhQvoJOZK6wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:08:48
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:08:41.262678 2026] [security2:error] [pid 14682:tid 14682] [client 34.85.224.34:51434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aiamur.com"] [uri "/.git/config"] [unique_id "aigCSfoWkEVc_EUv84S2rgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
gurnip
2026-06-09 11:26:02
(16 hours ago)
Vulnerability probe of page /.git/config, not found on server.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:12:17
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:12:13.062626 2026] [security2:error] [pid 11109:tid 11109] [client 34.85.224.34:34140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gerrytolentino.net"] [uri "/.git/config"] [unique_id "aif1DXfZg8wp2aVz6LZsIgAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:47:45
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:47:42.026978 2026] [security2:error] [pid 6008:tid 6008] [client 34.85.224.34:56424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.goatedlottosecrets.com"] [uri "/.git/config"] [unique_id "aifhPvSAM9Bsi-NIOpGedAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-06-09 09:40:12
(18 hours ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:22:12
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:22:07.759899 2026] [security2:error] [pid 19580:tid 19580] [client 34.85.224.34:53638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theateroobleck.com"] [uri "/.git/config"] [unique_id "aifbPxm4e8bAOIa3wYclPwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-09 08:51:29
(19 hours ago)
Scraping with a high error ratio and request rate Requests to unauthorized or suspicious endpoints ( ...
show more
Scraping with a high error ratio and request rate Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 02:20:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.224.34 (34.224.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:20:22.920856 2026] [security2:error] [pid 19580:tid 19580] [client 34.85.224.34:45426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.nutandboltguy.com"] [uri "/.git/config"] [unique_id "aid4ZrfTvP9jfoc1bnQ7yAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-09 01:05:26
(1 day ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐ฉ๐ช
4server
2026-06-09 00:28:33
(1 day ago)
[TueJun0902:28:28.7988202026][security2:error][pid2056489:tid2056555][client34.85.224.34:0]ModSecuri ...
show more
[TueJun0902:28:28.7988202026][security2:error][pid2056489:tid2056555][client34.85.224.34:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.vivereintrentino.it\"][uri\"/.git/config\"][unique_id\"aideLMPPd9GC0mAB0TyWrQAAAAo\"]
show less
Port Scan
Brute-Force
Web App Attack