๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:03:03
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 15:38:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:38:12.148740 2026] [security2:error] [pid 16562:tid 16562] [client 34.96.230.50:54896] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asociacionmutualsanjose.com"] [uri "/.git/config"] [unique_id "aigzZFxT0DMve5ED7kLKxQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
ddw
2026-06-09 13:55:28
(2 weeks ago)
ModSecurity detection - Rules: 930130(Restricted File Access Attempt)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:47:36
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:47:33.524764 2026] [security2:error] [pid 12761:tid 12761] [client 34.96.230.50:43342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.acgprinting.computersraleigh.com"] [uri "/.git/config"] [unique_id "aifvRbb9G53yMt5xTjXYvQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ReyhZhao
2026-06-09 10:46:38
(2 weeks ago)
Bunkerweb ModSecurity alert: Potential Remote Command Execution (RCE) detected. Unix shell code was ...
show more
Bunkerweb ModSecurity alert: Potential Remote Command Execution (RCE) detected. Unix shell code was identified within the request arguments, triggering a security rule designed to prevent application attacks.
show less
Brute-Force
๐ฉ๐ช
big-cloud.nl
2026-06-09 08:07:25
(2 weeks ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
WellSpring
2026-06-09 06:18:25
(2 weeks ago)
git exposure on 562.today/.git/config โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
Anonymous
2026-06-09 05:37:01
(2 weeks ago)
34.96.230.50 - - [09/Jun/2026:07:37:01 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ( ...
show more
34.96.230.50 - - [09/Jun/2026:07:37:01 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0 Safari/605.1.15"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:57:37
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:57:30.965625 2026] [security2:error] [pid 27946:tid 27946] [client 34.96.230.50:47318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "torahorah.com"] [uri "/.git/config"] [unique_id "aieBGtmrFRY3JqOHF_xmMwAAAFM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
ScamAware
2026-06-09 01:43:03
(2 weeks ago)
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensiti ...
show more
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensitive files, source control, config, and backups). Hits from same IP in last 60 minutes: 1. Unique request paths counted internally: 1. Cloudflare action: block. Cloudflare source: firewallCustom.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 19:16:49
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 15:16:45.417597 2026] [security2:error] [pid 20543:tid 20543] [client 34.96.230.50:34438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.unwaved.com"] [uri "/.git/config"] [unique_id "aicVHeaC-hSEyEpCMMt7aAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 17:54:09
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:54:05.300761 2026] [security2:error] [pid 31169:tid 31169] [client 34.96.230.50:51318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juncurryahn.com"] [uri "/.git/config"] [unique_id "aicBvUsabFKOfuIqsdtzBwAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-08 17:28:02
(2 weeks ago)
[MonJun0819:28:00.0339652026][security2:error][pid1590354:tid1590505][client34.96.230.50:0]ModSecuri ...
show more
[MonJun0819:28:00.0339652026][security2:error][pid1590354:tid1590505][client34.96.230.50:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.respiratrentino.it\"][uri\"/.git/config\"][unique_id\"aib7oFNm6lAbKsBcOEpktwAAAMA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 17:17:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:17:11.317793 2026] [security2:error] [pid 30402:tid 30402] [client 34.96.230.50:41594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.exhibitfactory.com"] [uri "/.git/config"] [unique_id "aib5Fw1VQiSGb89OI65r6gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 14:45:52
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.96.230.50 (50.230.96.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 10:45:45.965154 2026] [security2:error] [pid 3103:tid 3122] [client 34.96.230.50:53740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "annie-interface.org"] [uri "/.git/config"] [unique_id "aibVmVcAOpUAru892Ee_DAAAANE"]
show less
Brute-Force
Bad Web Bot
Web App Attack