๐ณ๐ฑ
homeshowdomain.nl
2026-09-24 21:59:09
(5 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-23.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
debestelapp
2026-09-24 08:45:10
(18 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 08:15:12
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 04:15:05.686830 2026] [security2:error] [pid 17481:tid 17531] [client 34.97.12.225:57332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dcmproductionsgroup.com"] [uri "/html/.git/config"] [unique_id "arTcCZjU1dmZjyowW0Ad5AAAAYY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-09-24 08:08:42
(19 hours ago)
tcp ports: 80,443 (168 or more attempts)
Port Scan
๐ฉ๐ช
dbmwebdesign
2026-09-24 07:00:13
(20 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 07:00:01
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 02:59:58.065679 2026] [security2:error] [pid 3628188:tid 3628188] [client 34.97.12.225:36286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dalessalesandservice.com"] [uri "/var/www/.git/config"] [unique_id "arTKbkgAPs08tXZQIDm57AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 05:36:37
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 01:36:32.468387 2026] [security2:error] [pid 22644:tid 22644] [client 34.97.12.225:54064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "customhumanrobots.com"] [uri "/htdocs/.git/config"] [unique_id "arS24H44ZsOu3eEyJ7jC2wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 04:10:31
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 00:10:23.345617 2026] [security2:error] [pid 30582:tid 30582] [client 34.97.12.225:46396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.vid.com"] [uri "/api/.git/config"] [unique_id "arSirwMwK_UKTJJKVswyEAAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-09-24 03:42:48
(23 hours ago)
[ThuSep2405:42:40.9707362026][security2:error][pid1650248:tid1650343][client34.97.12.225:0]ModSecuri ...
show more
[ThuSep2405:42:40.9707362026][security2:error][pid1650248:tid1650343][client34.97.12.225:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpcontacts.mondo-it.ch\"][uri\"/.git/config\"][unique_id\"arScMDSczmS02G-c8jDWoQAAAMA\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 00:58:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 20:58:02.673501 2026] [security2:error] [pid 1054:tid 1054] [client 34.97.12.225:35950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ozarktulsa.com"] [uri "/var/www/.git/config"] [unique_id "arR1mniPNRypf4Qg9oeiDgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-24 00:40:05
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 23:37:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 19:37:20.355960 2026] [security2:error] [pid 9336:tid 9336] [client 34.97.12.225:39704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "correlationdesign.com"] [uri "/htdocs/.git/config"] [unique_id "arRisEUdtBE1voWK9_6KWwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
Saec
2026-09-23 21:04:50
(1 day ago)
Jarvis auto-ban: Honeypot /.git/config via clients.saec.me [JP] ASN:Google LLC
Port Scan
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-23 19:15:41
(1 day ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 18:03:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.12.225 (225.12.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 14:03:38.820222 2026] [security2:error] [pid 7919:tid 7919] [client 34.97.12.225:52342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ccancun.co"] [uri "/api/.git/config"] [unique_id "arQUetn8_3yT4QICn0pbPAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack