๐ณ๐ฑ
homeshowdomain.nl
2026-09-03 22:00:19
(20 minutes ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-02.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
Hary74656
2026-09-03 08:34:24
(13 hours ago)
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3. No raw log data included.
Web App Attack
๐บ๐ธ
RamSet
2026-09-03 07:04:53
(15 hours ago)
[wx] HTTP-Probe on port 443 (via domain). 9 distinct paths probed in 4s. Sustained 13 req/min, 8 non ...
show more
[wx] HTTP-Probe on port 443 (via domain). 9 distinct paths probed in 4s. Sustained 13 req/min, 8 nonexistent paths (404). Paths: /.git/config, /.env, /.env.local, /.env.production, /.env.staging, /.env.development, /.env.test, /.env.remote
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2026-09-03 00:58:53
(21 hours ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
Anonymous
2026-09-02 18:49:11
(1 day ago)
Bot / seems abusive / Apache connections: 20
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐ซ๐ฎ
mnazibo
2026-09-02 16:00:04
(1 day ago)
Date: 02/Sep/2026 18:49:10 | Reported IP: 34.93.22.105 mod_security | id: 930130 932130 932235 93226 ...
show more
Date: 02/Sep/2026 18:49:10 | Reported IP: 34.93.22.105 mod_security | id: 930130 932130 932235 932260 933135 934100 934130 942151 942550 | IN/group.my_domain/- | Connections: 248 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /; /actions/.env; /admin/.env; /administrator/.env; /administrator/phpinfo.php; /admin-panel/.env; /admin/phpinfo.php; /angular/.env; /ansible/.env; /api/dev/.env; /api/.env; /api/staging/.env; /api/v1/.env; /api/v2/.env; /api/v3/.env; /app/.env; /application_default_credentials.json; /application/.env; /apps/.env; /aws/.env; /azure/.env; /backend/.env; /backup/.env; /backups/.env; /beta/.env; /beta/phpinfo.php; /bin/.env; /bootstrap/.env; /brevo/.env; /build/.env; /buildkite/.env; /bulk/.env; /cache/.env; /cakephp/.env; /campaign/.env; /cd/.env; /ci/.env; /circleci/.env; /client/.env; /cloud/.env; /cms/.env; /codeigniter/.env; /config/app/.env; /config/.env; /.config/gcloud/application_default_credentials.json; /
show less
SQL Injection
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-02 12:07:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.93.22.105 (105.22.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.22.105 (105.22.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 08:07:15.062749 2026] [security2:error] [pid 7995:tid 7995] [client 34.93.22.105:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.plaiatech.com"] [uri "/.git/config"] [unique_id "apgRc3Ty5a1oa370hy16KgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 11:06:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.93.22.105 (105.22.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.22.105 (105.22.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 07:06:40.909904 2026] [security2:error] [pid 13451:tid 13451] [client 34.93.22.105:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.pixacast.com"] [uri "/.git/config"] [unique_id "apgDQGZD43kSXjydUQdv-QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
TheDjRider
2026-09-02 10:11:13
(1 day ago)
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban tri ...
show more
CrowdSec detected Web application reconnaissance. Scenario: local/framework-recon. Automatic ban triggered. Detection time (UTC): 2026-09-02T10:11:09.911504935Z. Context: http_status=302
show less
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-02 08:53:22
(1 day ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฉ๐ช
XICTRON
2026-09-02 07:30:05
(1 day ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-02 06:53:25
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐ฌ๐ง
cg-design.co.uk
2026-09-02 06:43:47
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.93.22.105 (IN/India/105.22.93.34.bc. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.93.22.105 (IN/India/105.22.93.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-02 05:17:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.93.22.105 (105.22.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.22.105 (105.22.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:17:39.246867 2026] [security2:error] [pid 14741:tid 14741] [client 34.93.22.105:43432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.perlcreative.com"] [uri "/.git/config"] [unique_id "apexc05Sof1iJIhhUPccTAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-02 03:35:55
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack