๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:03:14
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-13.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-13 21:59:46
(2 days ago)
Auto-ban: >3000 req/min op 2026-06-13
Web App Attack
SSH
Hacking
Anonymous
2026-06-13 16:55:02
(2 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 16:05:19
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 12:05:12.536839 2026] [security2:error] [pid 31819:tid 31956] [client 35.189.14.218:37430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mysticscon.com"] [uri "/.git/config"] [unique_id "ai1_uG4PkxuyOwBVXxyadQAAARg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 14:42:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 10:42:01.310837 2026] [security2:error] [pid 16575:tid 16575] [client 35.189.14.218:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gibit.me"] [uri "/.git/config"] [unique_id "ai1sOchhD0qwqIPy4EJwoQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 14:26:27
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 10:26:24.177636 2026] [security2:error] [pid 26654:tid 26654] [client 35.189.14.218:57362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kiran.byles.net"] [uri "/.git/config"] [unique_id "ai1okC9-MzdwUv75YP_r6AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
IVski
2026-06-13 14:26:25
(2 days ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
OceanTreasure
2026-06-13 14:05:16
(2 days ago)
tcp/443; Git configuration exposure attempt: "GET /.git/config" @ 2026-06-13T13:55:47Z [proxy]
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-13 13:18:24
(2 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.189.14.218 (AU/Australia/218.14. ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.189.14.218 (AU/Australia/218.14.189.35.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 12:53:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 08:53:38.402304 2026] [security2:error] [pid 24138:tid 24138] [client 35.189.14.218:33546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blog.needtoorder.com"] [uri "/.git/config"] [unique_id "ai1S0n9Jexy5XLiVxCPbywAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 09:42:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 05:42:14.967478 2026] [security2:error] [pid 29233:tid 29233] [client 35.189.14.218:50188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test-site.angelaridgwaydressage.com"] [uri "/.git/config"] [unique_id "ai0l9q6m6aR2t6k8ARfY9QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 08:28:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 04:28:11.895667 2026] [security2:error] [pid 4581:tid 4581] [client 35.189.14.218:33010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whipchecks.com.au"] [uri "/.git/config"] [unique_id "ai0UmylFq50xV1ViKXEhiAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
sefinek.net
2026-06-13 07:57:30
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from AU.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from AU.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.git/config | UA: Mozilla/5.0 (iPad; CPU OS 12_3_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.1.1 Mobile/15E148 Safari/604.1 โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-13 06:38:37
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:38:33.128075 2026] [security2:error] [pid 7896:tid 7896] [client 35.189.14.218:58556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.quincysheetmetal.com.nashes.net"] [uri "/.git/config"] [unique_id "aiz66XQaK4EW1E9mK7_HJQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 05:22:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.14.218 (218.14.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 01:22:51.321722 2026] [security2:error] [pid 18285:tid 18285] [client 35.189.14.218:42270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thongtracker.com"] [uri "/.git/config"] [unique_id "aizpK1FyA1HUXTEy0nQoJwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack