๐ณ๐ฑ
homeshowdomain.nl
2026-05-18 21:59:07
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-05-18
Web App Attack
SSH
Hacking
๐จ๐ญ
filou812
2026-04-21 20:42:32
(1 month ago)
url tried is "/database.sql"
Web App Attack
๐ฉ๐ช
4server
2026-04-21 06:16:45
(1 month ago)
[TueApr2108:16:42.4043492026][security2:error][pid3025242:tid3025311][client45.3.34.98:0]ModSecurity ...
show more
[TueApr2108:16:42.4043492026][security2:error][pid3025242:tid3025311][client45.3.34.98:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"gualandi.ch\"][uri\"/data.sql\"][unique_id\"aecWSkodPrcZ1V_bs78d0wAAAMQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
jcbriar
2026-04-10 02:04:03
(1 month ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐ง๐ช
cmbplf
2026-03-29 08:24:03
(2 months ago)
6.813 requests with url.path */xmlrpc.php
Brute-Force
Bad Web Bot
๐ฌ๐ง
SilverZippo
2025-12-27 02:32:18
(5 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 04:42:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 23:42:38.035138 2025] [security2:error] [pid 15964:tid 15964] [client 45.3.34.98:23247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ancientleather.com"] [uri "/.env"] [unique_id "aSaFPjsRimKKt_Zv1dQfzAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:10:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:10:31.857759 2025] [security2:error] [pid 16764:tid 16764] [client 45.3.34.98:25821] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.pocosfarm.com"] [uri "/.git/HEAD"] [unique_id "aSZvp3oyfChyfnTs-AO5YAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:01:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:01:53.554376 2025] [security2:error] [pid 21126:tid 21126] [client 45.3.34.98:28769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sheargrafix.com"] [uri "/.env"] [unique_id "aSUqMayAToGN69nDxPUYgwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:42:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:42:28.205962 2025] [security2:error] [pid 739526:tid 739526] [client 45.3.34.98:11969] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.blanchebb.com"] [uri "/.git/HEAD"] [unique_id "aSUlpJEv1ow216kIsYj8fwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:19:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:19:26.834879 2025] [security2:error] [pid 5397:tid 5397] [client 45.3.34.98:9673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jhonbens.com"] [uri "/.env"] [unique_id "aSUSLmpKpdGi2NrJtW0MCQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-11-25 00:45:15
(6 months ago)
Attempted access to sensitive endpoint (/.git/HEAD) detected. Automated scan or unauthorized probing ...
show more
Attempted access to sensitive endpoint (/.git/HEAD) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:24:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:24:22.915708 2025] [security2:error] [pid 25299:tid 25299] [client 45.3.34.98:12731] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.wfowisdom.com"] [uri "/.git/HEAD"] [unique_id "aST3Nq6UhNAwBDvZQAr10wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 09:41:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:41:50.337476 2025] [security2:error] [pid 20696:tid 20696] [client 45.3.34.98:22363] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "costaricaencasa.galvez.cc"] [uri "/.git/HEAD"] [unique_id "aSQoXmY9xTuxy_QNYvANcQAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-10 06:38:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.34.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 10 01:38:20.598093 2025] [security2:error] [pid 30185:tid 30185] [client 45.3.34.98:44691] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nextlevelcharge.com"] [uri "/.env"] [unique_id "aRGIXLjojR-Og1rGz31naQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack