๐ฉ๐ช
Jochen Pretli
2026-09-15 12:35:15
(23 hours ago)
connection to honeypot
Email Spam
Port Scan
๐ฉ๐ช
Jochen Pretli
2026-09-12 14:21:06
(3 days ago)
connection to honeypot
Email Spam
Port Scan
๐ณ๐ฑ
homeshowdomain.nl
2026-09-04 22:01:22
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-03.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-04 16:07:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 12:07:02.007939 2026] [security2:error] [pid 31489:tid 31489] [client 34.97.52.11:48038] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "myemail.navy"] [uri "/app/.git/config"] [unique_id "aprsptTPfvRTgb-gzym6NwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
NihiliousMonk
2026-09-04 16:06:16
(1 week ago)
Fail2Ban report from jail npm-scanners
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 13:45:13
(1 week ago)
Observed scanned 12 known-sensitive endpoint(s), e.g.: /.git/config, /api/.git/config, /app/.git/con ...
show more
Observed scanned 12 known-sensitive endpoint(s), e.g.: /.git/config, /api/.git/config, /app/.git/config, /backend/.git/config, /htdocs/.git/config, /html/.git/config
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-04 11:55:01
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-04 11:40:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:40:04.924748 2026] [security2:error] [pid 15556:tid 15556] [client 34.97.52.11:45518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thevillageartcenter.pamelaweisberg.com"] [uri "/api/.git/config"] [unique_id "apquFOkIMcGM1EifTaScowAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-04 11:36:33
(1 week ago)
1.234 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-04 09:29:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:29:06.457741 2026] [security2:error] [pid 7113:tid 7113] [client 34.97.52.11:52438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "westonimports.com"] [uri "/htdocs/.git/config"] [unique_id "apqPYqWS-q0Dc6-sXRwtogAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-04 08:12:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.52.11 (11.52.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 04:11:58.841524 2026] [security2:error] [pid 23305:tid 23305] [client 34.97.52.11:57292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "california6.com.glassicannex.org"] [uri "/src/.git/config"] [unique_id "app9Ti3WmESxJbOTS68zoQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Jochen Pretli
2026-09-04 07:53:04
(1 week ago)
connection to honeypot
Email Spam
Port Scan
๐ฉ๐ช
paissangroup
2026-09-04 06:44:11
(1 week ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-04 00:50:20
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
ddobko
2026-09-03 23:22:10
(1 week ago)
Bad Web Bot
Web App Attack