๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:01:34
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 12:39:25
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:39:22.070297 2026] [security2:error] [pid 18099:tid 18099] [client 34.97.198.25:49860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeffjastro.com.jeffj.net"] [uri "/.git/config"] [unique_id "aigJegeBJgo4LlLkUm4nLAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-09 12:03:16
(1 week ago)
[TueJun0914:03:10.8931952026][security2:error][pid986024:tid987885][client34.97.198.25:0]ModSecurity ...
show more
[TueJun0914:03:10.8931952026][security2:error][pid986024:tid987885][client34.97.198.25:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"edilmarra.ch\"][uri\"/.git/config\"][unique_id\"aigA_qwAaIkWW6FixENxDAAAAIs\"]
show less
Hacking
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-09 07:05:41
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 06:58:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:58:08.550113 2026] [security2:error] [pid 12619:tid 12619] [client 34.97.198.25:58248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rxrepconnect.circlehealthcaregroup.com"] [uri "/.git/config"] [unique_id "aie5gHpgpcuPD93dCCTVsAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:22:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:21:59.983696 2026] [security2:error] [pid 20761:tid 20761] [client 34.97.198.25:58888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ganeki.com"] [uri "/.git/config"] [unique_id "aiei9-eNOqtIZ3mZycCqrQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-09 04:26:08
(1 week ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:23:41
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:23:36.463813 2026] [security2:error] [pid 9248:tid 9259] [client 34.97.198.25:48310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mojodelicatesse.com.oplconnect.com"] [uri "/.git/config"] [unique_id "aieVSAC9ZM5nwnNJX3LtrQAAAQg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:28:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:28:41.992960 2026] [security2:error] [pid 14074:tid 14074] [client 34.97.198.25:46056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nationalenq.com"] [uri "/.git/config"] [unique_id "aieIaVjFLJ_5TMs1S1QWIAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:05:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:05:49.357319 2026] [security2:error] [pid 8942:tid 8945] [client 34.97.198.25:43638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gelatoconsapevole.it.theyogicat.com"] [uri "/.git/config"] [unique_id "aidm7aXsKpmIBopi0l7NogAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 20:59:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:59:36.718220 2026] [security2:error] [pid 27239:tid 27239] [client 34.97.198.25:46666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wanderlust-fineartphotos.com"] [uri "/.git/config"] [unique_id "aictOI6juqnDlNkpKWEZUwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-08 14:47:55
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฎ๐น
Inartis
2026-06-08 14:22:38
(1 week ago)
34.97.198.25 - - [08/Jun/2026:16:22:37 +0200] "GET /.git/config HTTP/1.1" 403 4998 "-" "Mozilla/5.0 ...
show more
34.97.198.25 - - [08/Jun/2026:16:22:37 +0200] "GET /.git/config HTTP/1.1" 403 4998 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.99 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2026-06-08 12:33:23
(1 week ago)
/.git/config
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 11:42:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.198.25 (25.198.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 07:42:41.071760 2026] [security2:error] [pid 22076:tid 22076] [client 34.97.198.25:43914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cdtstorage.gocdt.com"] [uri "/.git/config"] [unique_id "aiaqsUk3axqrozJ4IhrcrAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack