๐ฉ๐ช
klaus_ph
2026-09-29 08:58:53
(2 days ago)
2026-09-27 18:21:56,864 fail2ban.actions [8144]: NOTICE [ipblocklist] Ban 34.106.147.202
...
Bad Web Bot
๐ฉ๐ช
klaus_ph
2026-09-26 22:38:11
(4 days ago)
2026-09-25 21:43:52,094 fail2ban.actions [594716]: NOTICE [ipblocklist] Ban 34.106.147.202
. ...
show more
2026-09-25 21:43:52,094 fail2ban.actions [594716]: NOTICE [ipblocklist] Ban 34.106.147.202
...
show less
Bad Web Bot
๐ฎ๐ณ
evicky2002
2026-09-24 06:00:03
(1 week ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
Anonymous
2026-09-24 04:31:35
(1 week ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐จ๐ญ
Peter-Johann Sarbach
2026-09-23 23:37:05
(1 week ago)
Hacking website
Hacking
๐บ๐ธ
LSPCCU
2026-09-23 20:54:30
(1 week ago)
TSEC Honeypot Network report. Threat score: 82/100. Categories: Port Scan, Hacking, Brute-Force, Web ...
show more
TSEC Honeypot Network report. Threat score: 82/100. Categories: Port Scan, Hacking, Brute-Force, Web App Attack, SSH. Honeypot: galah, h0neytr4p. Context: 34.106.147.202 classified as botnet node participating in coordinated attack campaigns (high confidence).
show less
Port Scan
Hacking
Brute-Force
Web App Attack
SSH
๐ฉ๐ฐ
ScamAware
2026-09-23 18:32:08
(1 week ago)
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensiti ...
show more
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensitive files, source control, config, and backups). Hits from same IP in last 60 minutes: 1. Unique request paths counted internally: 1. Cloudflare action: block. Cloudflare source: firewallCustom.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 18:23:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.106.147.202 (202.147.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.147.202 (202.147.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 14:23:29.340234 2026] [security2:error] [pid 557:tid 557] [client 34.106.147.202:53106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sbxyz.net"] [uri "/.git/config"] [unique_id "arQZIe3dzDbtU_x0j5FhlgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-09-23 18:22:07
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: s.budyn.wtf | URI: /.git/config | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-09-23 17:39:50
(1 week ago)
34.106.147.202 - - [23/Sep/2026:19:39:49 +0200] "GET /.git/config HTTP/1.1" 200 54707 "-" "-"
...
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-23 17:03:59
(1 week ago)
cloudlinux2 fail2ban: 2026-09-23 19:00:35,108 fail2ban.filter [1603]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-23 19:00:35,108 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 34.106.147.202 - 2026-09-23 19:00:35cloudlinux2 fail2ban: 2026-09-23 19:00:45,236 fail2ban.actions [1603]: NOTICE [plesk-modsecurity] Unban 152.59.143.159cloudlinux2 fail2ban: 2026-09-23 19:00:50,039 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 35.201.215.230 - 2026-09-23 19:00:49cloudlinux2 fail2ban: 2026-09-23 19:00:50,048 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 35.201.215.230 - 2026-09-23 19:00:49cloudlinux2 fail2ban: 2026-09-23 19:00:48,418 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 35.201.215.230 - 2026-09-23 19:00:48cloudlinux2 fail2ban: 2026-09-23 19:00:50,202 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 35.201.215.230 - 2026-09-23 19:00:50cloudlinux2 fail2ban: 2026-09-23 19:00:50,255 fail2ban.filter [1603]: INFO [plesk-modsecurity] Found 35.201.215.230 - 2026-09-23 19:00:50cloudlinux
show less
Brute-Force
๐ซ๐ท
GoodOldTOS
2026-09-23 17:02:17
(1 week ago)
Bad keywords detected in request: /.git/config/.git
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 16:46:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.106.147.202 (202.147.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.147.202 (202.147.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 12:46:25.798578 2026] [security2:error] [pid 9204:tid 9204] [client 34.106.147.202:33956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sarahwhitecotton.com"] [uri "/.git/config"] [unique_id "arQCYRJgN2sytiWWCfLr8AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-23 15:59:33
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 15:51:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.106.147.202 (202.147.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.147.202 (202.147.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 11:51:12.573859 2026] [security2:error] [pid 13948:tid 13948] [client 34.106.147.202:59076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shafoo.com.sentientresearch.com"] [uri "/.git/config"] [unique_id "arP1cKh0jjRqBOr3Z3EiGgAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack