๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:01:43
(9 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
Roderic
2026-06-15 08:35:51
(22 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted])
Bad Web Bot
๐ฌ๐ง
OptimusGO
2026-06-15 07:54:25
(23 hours ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-06-15 08:54:25 UTC
Log evidence:
34.93.69.81 - - [15/Jun/2026:08:54:24 +0100] "GET /v1/.git/config HTTP/1.1" 200 18527 "-" "Mozilla/5.0 (X11; CentOS; Linux x86_64; rv:36.0) Gecko/20100101 Firefox/36.0"
34.93.69.81 - - [15/Jun/2026:08:54:24 +0100] "GET /frontend/.git/config HTTP/1.1" 200 18527 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36 OPR/62.0.3331.88"
34.93.69.81 - - [15/Jun/2026:08:54:24 +0100] "GET /web/.git/config HTTP/1.1" 200 18527 "-" "Mozilla/5.0 (Linux; Android 9; BLA-L29) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.101 Mobile Safari/537.36"
show less
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 07:41:54
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:41:50.447296 2026] [security2:error] [pid 8349:tid 8349] [client 34.93.69.81:51228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.xtrl.danged.com"] [uri "/.git/config"] [unique_id "ai-sviOvbGLVfM_cGCftQgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 06:41:55
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:33:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:33:16.180244 2026] [security2:error] [pid 22189:tid 22189] [client 34.93.69.81:47654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rodeeinsurance.com"] [uri "/src/.git/config"] [unique_id "ai-crCeLBz7QyWQC2QnjXAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 06:30:17
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-06-15 06:20:10
(1 day ago)
Bot / scanning and/or hacking attempts: GET /html/.git/config HTTP/1.1, GET /build/.git/config HTTP/ ...
show more
Bot / scanning and/or hacking attempts: GET /html/.git/config HTTP/1.1, GET /build/.git/config HTTP/1.1, GET /v1/.git/config HTTP/1.1, GET /laravel/.git/config HTTP/1.1, GET /wordpress/.git/config HTTP/1.1, GET /project/.git/config HTTP/1.1, GET /portal/.git/config HTTP/1.1, GET /api/.git/config HTTP/1.1, GET /wp-content/.git/config HTTP/1.1, GET /htdocs/.git/config HTTP/1.1, GET /shop/.git/config HTTP/1.1, GET /static/.git/config HTTP/1.1, GET /assets/.git/config HTTP/1.1, GET /dashboard/.git/config HTTP/1.1, GET /admin/.git/config HTTP/1.1, GET /v2/.git/config HTTP/1.1, GET /web/.git/config HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:04:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:03:55.709336 2026] [security2:error] [pid 18975:tid 19002] [client 34.93.69.81:54304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dermatologycoloradosprings.com.aafm.us"] [uri "/project/.git/config"] [unique_id "ai-Hu64O3Z75KZgPGmCEWAAAAZc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-15 04:02:02
(1 day ago)
11.125 requests from abuseipdb.com blacklisted IP (10mos1w1d)
Brute-Force
Bad Web Bot
๐ซ๐ท
masterguru
2026-06-15 02:26:55
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:08:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:08:28.766105 2026] [security2:error] [pid 1779:tid 1910] [client 34.93.69.81:55710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seracon.com.ec"] [uri "/static/.git/config"] [unique_id "ai9enDpAbtoJnffpvhW22QAAANc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:20:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.69.81 (81.69.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:19:59.406403 2026] [security2:error] [pid 22677:tid 22677] [client 34.93.69.81:48964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "localprowrestling.com"] [uri "/laravel/.git/config"] [unique_id "ai9TP9HVmxz9AQE1XfGgqQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-06-15 00:04:53
(1 day ago)
34.93.69.81 - - [15/Jun/2026:02:04:50 +0200] "GET /.git/config HTTP/1.1" 403 5008 "-" "Mozilla/5.0 ( ...
show more
34.93.69.81 - - [15/Jun/2026:02:04:50 +0200] "GET /.git/config HTTP/1.1" 403 5008 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_4 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) GSA/79.0.259819395 Mobile/16G77 Safari/604.1"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-06-14 23:42:06
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.93.69.81 (IN/India/81.69.93.34.bc.go ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.93.69.81 (IN/India/81.69.93.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection