๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:36
(9 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฟ
Antinson
2026-06-15 10:35:34
(20 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐จ๐ญ
copestack
2026-06-15 10:00:12
(21 hours ago)
Automated detection: HTTP environment file enumeration (.env credential harvesting). 1 decisions on ...
show more
Automated detection: HTTP environment file enumeration (.env credential harvesting). 1 decisions on ov-4e5936.
show less
Web App Attack
Anonymous
2026-06-15 09:56:33
(21 hours ago)
PSCSERV WPSCAN 34.87.210.128
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:12:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:12:52.493637 2026] [security2:error] [pid 20667:tid 20798] [client 34.87.210.128:51804] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.acps.aafm.us"] [uri "/htdocs/.git/config"] [unique_id "ai-l9EFrWQcKXsWLP6i8rQAAAc0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-15 06:05:16
(1 day ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:59:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:59:02.102331 2026] [security2:error] [pid 6093:tid 6093] [client 34.87.210.128:45526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "constructiondomex.com"] [uri "/portal/.git/config"] [unique_id "ai-UptEYxm38IITaO6rLbQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
GabrielJST
2026-06-15 05:17:13
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.87.210.128 (AU/Australia/128.210.87. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.87.210.128 (AU/Australia/128.210.87.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐ณ๐ฑ
Savvii
2026-06-15 02:53:10
(1 day ago)
20 attempts against mh-misbehave-ban on eris
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:26:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:26:01.970870 2026] [security2:error] [pid 25996:tid 25996] [client 34.87.210.128:46050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.benwoodwv.com.mmldesign.com"] [uri "/api/.git/config"] [unique_id "ai9iubC1JF_iiFZCS7MtOQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 02:04:35
(1 day ago)
(modsecurity) srv201 ModSecurity 34.87.210.128 (AU/Australia/128.210.87.34.bc.googleusercontent.com) ...
show more
(modsecurity) srv201 ModSecurity 34.87.210.128 (AU/Australia/128.210.87.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ด
jad-abuse
2026-06-15 01:01:52
(1 day ago)
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure ...
show more
ThreatFeed automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 30 hits.
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 00:45:17
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:24:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.210.128 (128.210.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:24:49.225046 2026] [security2:error] [pid 4383:tid 4403] [client 34.87.210.128:38718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hcvideo.gryphix.com"] [uri "/api/.git/config"] [unique_id "ai9GUau_4WOgG5kFmKeJQgAAAZE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-06-15 00:05:52
(1 day ago)
Scanning for web/db/file exploits on gsmwonen.tafelconfigurator.nl
SQL Injection
Bad Web Bot
Web App Attack