๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:04:01
(3 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ซ๐ฎ
inlink.ltd
2026-06-09 13:53:45
(3 months ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 13:50:28
(3 months ago)
(mod_security) mod_security (id:949110) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:50:22.291792 2026] [security2:error] [pid 28738:tid 28738] [client 34.96.138.174:34338] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.donations.freedrm.org"] [uri "/.git/config"] [unique_id "aigaHudZIngreq6fWaKyUgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:03:30
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:03:25.290277 2026] [security2:error] [pid 31460:tid 31460] [client 34.96.138.174:60970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cekilis.kircali.net"] [uri "/.git/config"] [unique_id "aigBDRhbgyh8lF_sgAbPhwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:15:12
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:15:08.842244 2026] [security2:error] [pid 3951:tid 3951] [client 34.96.138.174:55672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tribe360.io"] [uri "/.git/config"] [unique_id "aifZnJThvf_YedZxZoSSkAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:18:33
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:18:26.155188 2026] [security2:error] [pid 15669:tid 15669] [client 34.96.138.174:39114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.angelicatrombo.gregorii.com"] [uri "/.git/config"] [unique_id "aie-QnP-bSchjZzP70EHTwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 07:18:28
(3 months ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.96.138.174 (HK/Hong Kong/174.138.9 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.96.138.174 (HK/Hong Kong/174.138.96.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ท๐บ
Mga Admin
2026-06-09 02:38:03
(3 months ago)
34.96.138.174 - - [09/Jun/2026:09:38:02 +0700] "GET /.git/config HTTP/1.1" 404 69 "-" "Mozilla/5.0 ( ...
show more
34.96.138.174 - - [09/Jun/2026:09:38:02 +0700] "GET /.git/config HTTP/1.1" 404 69 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Ubuntu Chromium/75.0.3770.142 Chrome/75.0.3770.142 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 20:12:20
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:12:14.231543 2026] [security2:error] [pid 15079:tid 15091] [client 34.96.138.174:47080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trident-environmental.com"] [uri "/.git/config"] [unique_id "aiciHguqLAWR7Aau5y0TBwAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 18:27:54
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 14:27:46.880789 2026] [security2:error] [pid 22770:tid 22770] [client 34.96.138.174:34070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.market1st.bridgital.com"] [uri "/.git/config"] [unique_id "aicJolHKtCnFFH8OyZcm1wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-08 18:14:03
(3 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 17:32:49
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:32:42.487132 2026] [security2:error] [pid 10858:tid 10858] [client 34.96.138.174:41406] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cchockeyhistory.org.dhsgrad.net"] [uri "/.git/config"] [unique_id "aib8utpdjcM9jN8tJigdPwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 15:27:41
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 11:27:36.614157 2026] [security2:error] [pid 29843:tid 29843] [client 34.96.138.174:35762] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "katemcleod.net"] [uri "/.git/config"] [unique_id "aibfaDDWiFBE_KpMUTC13AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MM-bot
2026-06-08 15:15:00
(3 months ago)
URL-probe: HTTP/1.1 GET request on /.git/config (2026-06-08 17:15:00 UTC+2)
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 12:50:14
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.138.174 (174.138.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 08:50:07.900678 2026] [security2:error] [pid 23511:tid 23511] [client 34.96.138.174:58266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.micasafrontgate.joepaladino.com"] [uri "/.git/config"] [unique_id "aia6f8cD5rpxI8hL9smjIwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack