๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:01:08
(13 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-26.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 17:12:17
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:12:09.147387 2026] [security2:error] [pid 714:tid 714] [client 34.97.162.231:51958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jerryhazlett.com"] [uri "/src/.git/config"] [unique_id "apBv6TYICZEvpFjM6rPMQwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:36:44
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:36:39.748538 2026] [security2:error] [pid 8285:tid 8285] [client 34.97.162.231:51940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aarentes.com"] [uri "/app/.git/config"] [unique_id "apBnlyL6gfPK84ZNOkFjggAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Major Hostility
2026-08-27 16:24:15
(19 hours ago)
"GET /wordpress/.git/config HTTP/1.1" 404
"GET /site/.git/config HTTP/1.1" 404
"GET /.git/config HTT ...
show more
"GET /wordpress/.git/config HTTP/1.1" 404
"GET /site/.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
"GET /app/.git/config HTTP/1.1" 404
"GET /src/.git/config HTTP/1.1" 404
"GET /backend/.git/config HTTP/1.1" 404
show less
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 16:22:41
(19 hours ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 11:42:16
(23 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-27 11:19:24
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:54:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:54:44.924039 2026] [security2:error] [pid 3588:tid 3588] [client 34.97.162.231:46704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mariakhalitov.com"] [uri "/www/.git/config"] [unique_id "apAXdOkP8deHMhPSGzhkkgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-27 06:52:58
(1 day ago)
[ThuAug2708:52:50.8009202026][security2:error][pid3996150:tid3996443][client34.97.162.231:0]ModSecur ...
show more
[ThuAug2708:52:50.8009202026][security2:error][pid3996150:tid3996443][client34.97.162.231:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"autodiscover.carolin-mizio.ch\"][uri\"/html/.git/config\"][unique_id\"ao_ewizs0ceVK2ts4viGcwAAAE8\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:52:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:52:29.862169 2026] [security2:error] [pid 20050:tid 20050] [client 34.97.162.231:57220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test.flyingdodopublications.com"] [uri "/backend/.git/config"] [unique_id "ao_erbv94Fqmf0YZnlawrgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-27 06:50:08
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-27 06:49:45
(1 day ago)
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 4575 "-" "c ...
show more
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 4575 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /src/.git/config HTTP/1.1" 404 4574 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /app/.git/config HTTP/1.1" 404 4574 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /site/.git/config HTTP/1.1" 404 4573 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /.git/config HTTP/1.1" 403 4577 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /var/www/.git/config HTTP/1.1" 404 4573 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /api/.git/config HTTP/1.1" 404 4575 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /html/.git/config HTTP/1.1" 404 4575 "-" "crusader-worker/1.0"
34.97.162.231 - - [27/Aug/2026:08:49:42 +0200] "GET /backend/.git/config HTTP/1.
show less
Web App Attack
Hacking
๐ฌ๐ง
consul.to
2026-08-27 05:57:27
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-08-27 05:45:51
(1 day ago)
[server.tmg.gr] httpd-config-scan: sites=www.cardioathena2021.gr; logs=/var/log/httpd/domains/cardio ...
show more
[server.tmg.gr] httpd-config-scan: sites=www.cardioathena2021.gr; logs=/var/log/httpd/domains/cardioathena2021.gr.log; samples=/htdocs/.git/config | /www/.git/config | /public/.git/config
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 03:32:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.162.231 (231.162.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:32:05.128094 2026] [security2:error] [pid 1512506:tid 1512531] [client 34.97.162.231:43168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "millievelasco.com"] [uri "/www/.git/config"] [unique_id "ao-vtW4o2jv0_JwE14AJoQAAAdU"]
show less
Brute-Force
Bad Web Bot
Web App Attack