๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:04:07
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 14:45:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:45:21.464595 2026] [security2:error] [pid 19102:tid 19102] [client 34.97.196.209:60944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nvafc.drxcontent.com"] [uri "/.git/config"] [unique_id "aignATOuXEAriaS4DV46JQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 14:00:56
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:00:50.485502 2026] [security2:error] [pid 2276:tid 2276] [client 34.97.196.209:37860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.baystreet.news"] [uri "/.git/config"] [unique_id "aigckizr9ZVFrkvf7Zaj9QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
joharikop
2026-06-09 11:09:38
(1 week ago)
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-cred ...
show more
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-credential-probes jail.
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 09:31:39
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.97.196.209 (JP/Japan/209.196.97.34 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.97.196.209 (JP/Japan/209.196.97.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 08:38:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:38:47.511395 2026] [security2:error] [pid 9958:tid 9958] [client 34.97.196.209:55002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iplayriichi.com"] [uri "/.git/config"] [unique_id "aifRF1aZYKLaqC_bQqlNLQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-09 08:37:46
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:55:33
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:55:25.198983 2026] [security2:error] [pid 8236:tid 8236] [client 34.97.196.209:40690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lsd36.com"] [uri "/.git/config"] [unique_id "aieqzSMlIm6ZDtwYGRWMywAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:42:56
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:42:52.555598 2026] [security2:error] [pid 11589:tid 11589] [client 34.97.196.209:48278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "monkeyonabike.com"] [uri "/.git/config"] [unique_id "aieLvNRIesxp_sRT6ukKCQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:16:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:16:11.917539 2026] [security2:error] [pid 3991:tid 3991] [client 34.97.196.209:39736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bayinsights.whitmarshinc.com"] [uri "/.git/config"] [unique_id "aieFe9CtEz7-AjyH9kXMyAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:55:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:55:05.317152 2026] [security2:error] [pid 5756:tid 5756] [client 34.97.196.209:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdn-1.socialstudiesforkids.com"] [uri "/.git/config"] [unique_id "aidyeUlO1fEAycZRQi_UVAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:09:02
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:08:57.802442 2026] [security2:error] [pid 8215:tid 8215] [client 34.97.196.209:34620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.astglobaltech.com"] [uri "/.git/config"] [unique_id "aidnqRfkgd4pjGe9IjyiOgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
CBJ
2026-06-09 00:23:48
(1 week ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐จ๐ฆ
TechnoSolutions CL
2026-06-08 20:58:37
(1 week ago)
34.97.196.209 - - [08/Jun/2026:20:58:34 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (X ...
show more
34.97.196.209 - - [08/Jun/2026:20:58:34 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.87 Safari/537.36"
34.97.196.209 - - [08/Jun/2026:20:58:37 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/4.0 (PSP (PlayStation Portable); 2.00)"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 20:52:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.196.209 (209.196.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:52:13.809159 2026] [security2:error] [pid 28303:tid 28311] [client 34.97.196.209:39422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.deepwaterdock.nicholsinvest.com"] [uri "/.git/config"] [unique_id "aicrfcncl6DSecDEI0N4NAAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack