๐ณ๐ฑ
homeshowdomain.nl
2026-05-09 22:02:27
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-08.
show less
Web App Attack
SSH
Hacking
๐ง๐ท
Gertec
2026-05-09 11:14:51
(4 months ago)
This IP address 34.94.220.170 has been carrying out attacks on our website. Reason: Blocked IP addre ...
show more
This IP address 34.94.220.170 has been carrying out attacks on our website. Reason: Blocked IP address | Method: GET | Path: /.git/config.
show less
Hacking
DDoS Attack
๐ฉ๐ช
_ArminS_
2026-05-08 19:42:56
(4 months ago)
WEB-Scan 35652:80 detected 2026.05.08 21:42:56
blocked until 2026.06.27 14:45:43
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-08 19:42:24
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 15:42:20.926551 2026] [security2:error] [pid 24167:tid 24190] [client 34.94.220.170:33604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "condobudget.com"] [uri "/.git/config"] [unique_id "af48nPcZCN2HF0sY2_l94wAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-05-08 18:47:23
(4 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.94.220.170 (US/United States/170 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.94.220.170 (US/United States/170.220.94.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐ฉ๐ช
IVski.com
2026-05-08 18:35:20
(4 months ago)
IVski WAF | Sensitive file probe detected - looking for .env, .git, backups or credentials
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 18:35:07
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 14:34:59.567533 2026] [security2:error] [pid 14914:tid 14914] [client 34.94.220.170:36674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clipper1970.com.jimgrenier.com"] [uri "/.git/config"] [unique_id "af4s04EjvRs4rH6tAtVHCgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 18:14:05
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 14:13:58.463751 2026] [security2:error] [pid 24181:tid 24181] [client 34.94.220.170:60706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.londongroup.info"] [uri "/.git/config"] [unique_id "af4n5oOKmAgu8WajfIoomgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
cleverest.eu
2026-05-08 17:49:48
(4 months ago)
MimirWAF has 1 incident from 1 distinct domain => {"bad_request_uri / vcs_probe"}
Web App Attack
Anonymous
2026-05-08 17:23:05
(4 months ago)
34.94.220.170 - - [08/May/2026:17:23:04 +0000] "GET /.git/config HTTP/1.1" 403 2411 "-" "Mozilla/5.0 ...
show more
34.94.220.170 - - [08/May/2026:17:23:04 +0000] "GET /.git/config HTTP/1.1" 403 2411 "-" "Mozilla/5.0 (Linux; Android 9; ANE-LX1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.157 Mobile Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 17:12:05
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 13:12:00.463624 2026] [security2:error] [pid 18316:tid 18316] [client 34.94.220.170:40764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wurkroom.biz.smartstylehair.com"] [uri "/.git/config"] [unique_id "af4ZYNLwHsESqyQ4TlVtwQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-08 16:58:31
(4 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 16:35:18
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 12:35:12.949224 2026] [security2:error] [pid 6212:tid 6212] [client 34.94.220.170:48580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "craftammie.com"] [uri "/.git/config"] [unique_id "af4QwPs0G_SP1GZrkhZdJwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 16:13:34
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 12:13:30.933142 2026] [security2:error] [pid 4892:tid 4962] [client 34.94.220.170:55932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jrbllc.idealcentralvac.com"] [uri "/.git/config"] [unique_id "af4LqhVPgi-KCiLbDWf_nAAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 15:37:45
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.220.170 (170.220.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 11:37:38.782004 2026] [security2:error] [pid 19229:tid 19229] [client 34.94.220.170:59558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pnp.gisur.com"] [uri "/.git/config"] [unique_id "af4DQsCD26M1wWbQUjy6hwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack