๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:03:44
(4 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐จ๐ญ
ca
2026-06-15 10:17:43
(16 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ฉ๐ช
BlueWire Hosting
2026-06-15 10:12:35
(16 hours ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐ฒ๐พ
Rizzy
2026-06-15 10:00:36
(16 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-06-15 09:50:04
(16 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 09:39:33
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:39:25.759618 2026] [security2:error] [pid 25676:tid 25676] [client 34.88.22.244:34398] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "desertalfas.org"] [uri "/frontend/.git/config"] [unique_id "ai_ITVJCaDUIqOPQEEemfwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 09:30:02
(16 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 09:04:09
(17 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ณ๐ฑ
NL-crowdsec-reporter
2026-06-15 08:58:53
(17 hours ago)
CrowdSec | Unauthorized Access | Country:FI | AS:GOOGLE-CLOUD-PLATFORM
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 08:47:12
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:47:07.789128 2026] [security2:error] [pid 26474:tid 26474] [client 34.88.22.244:41904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gowithevergreen.com"] [uri "/portal/.git/config"] [unique_id "ai-8C8b0tiqs68gjs11o3AAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-15 08:04:31
(18 hours ago)
[MonJun1510:04:27.3555422026][security2:error][pid2243875:tid2244252][client34.88.22.244:0]ModSecuri ...
show more
[MonJun1510:04:27.3555422026][security2:error][pid2243875:tid2244252][client34.88.22.244:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"spc-ticino.ch.81-17-25-250.cpanel.site\"][uri\"/frontend/.git/config\"][unique_id\"ai-yC2Yf1I9fiDt3shMIRQAAAQo\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-06-15 07:28:29
(18 hours ago)
CMS/framework probe: 34.88.22.244 - - [15/Jun/2026:09:28:16 +0200] "GET /frontend/.git/config HTTP/1 ...
show more
CMS/framework probe: 34.88.22.244 - - [15/Jun/2026:09:28:16 +0200] "GET /frontend/.git/config HTTP/1.1" 404 162 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_10_5) AppleWebKit/603.3.8 (KHTML, like Gecko) Version/10.1.2 Safari/603.3.8" asn=396982 org="Google LLC" country=FI
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:26:56
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:26:48.837574 2026] [security2:error] [pid 22966:tid 22966] [client 34.88.22.244:48954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rpmevolution.com.jemsfood.com"] [uri "/app/.git/config"] [unique_id "ai-pOEDsWdOvr4WnR_hdLgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-15 06:07:16
(20 hours ago)
(mod_security) mod_security (id:11000011) triggered by 34.88.22.244: 1 in the last 86400 secs; Ports ...
show more
(mod_security) mod_security (id:11000011) triggered by 34.88.22.244: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 09:07:12.626377 2026] [security2:error] [pid 921870:tid 922022] [client 34.88.22.244:32848] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "128"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 244.22.88.34.bc.googleusercontent.com"] [hostname "tavernadimitris.com"] [uri "/src/.git/config"] [unique_id "ai-WkCiyK_EXlfCi56ecnQAAAFM"]
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-15 05:58:50
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.22.244 (244.22.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:58:43.898423 2026] [security2:error] [pid 19589:tid 19589] [client 34.88.22.244:41492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "midcityrotary.org"] [uri "/app/.git/config"] [unique_id "ai-Uk7eqiTI4KgaB2f4j9gAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack