π³π±
Alt255
2026-09-29 13:18:11
(5 days ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.12.32.172 - - [29/Sep/2026:15:17:59 +0200] "GET /.git/config HTTP/1.1" 301 625 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-29 12:39:52
(5 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
π¬π§
Aetherweb Ark
2026-09-29 05:14:13
(5 days ago)
(mod_security) mod_security (id:949110) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 00:37:58
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 20:37:53.035710 2026] [security2:error] [pid 26855:tid 26855] [client 34.12.32.172:48860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.graficasbis.com"] [uri "/.git/config"] [unique_id "arsIYUSUcyaV453dUbC8cAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 17:15:32
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 13:15:26.601206 2026] [security2:error] [pid 14149:tid 14149] [client 34.12.32.172:59682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heatherbargeron.com.michaelholdengc.com"] [uri "/.git/config"] [unique_id "arqgrnvQqa8fUTjjOAP7UAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 02:53:24
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 22:53:18.154063 2026] [security2:error] [pid 31816:tid 31816] [client 34.12.32.172:42322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kfraser.com"] [uri "/.git/config"] [unique_id "arnWnrgxs8yp_PzwmGiC6wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-26 06:32:15
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
π«π·
Teufel100
2026-09-25 18:58:00
(1 week ago)
ModSecurity rejected a query
Brute-Force
Hacking
Web App Attack
π«π·
masterguru
2026-09-25 03:47:27
(1 week ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
π³π±
homeshowdomain.nl
2026-09-22 22:06:36
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-21.
show less
Web App Attack
SSH
Hacking
Anonymous
2026-09-21 16:59:32
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 15:44:53
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:44:48.276531 2026] [security2:error] [pid 6260:tid 6260] [client 34.12.32.172:52264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kronrod.com"] [uri "/.git/config"] [unique_id "arFQ8P9rz_dPOri3KgWfxQAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-20 19:10:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.12.32.172 (172.32.12.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 15:10:31.231847 2026] [security2:error] [pid 20071:tid 20071] [client 34.12.32.172:60402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nacuajo.com"] [uri "/.git/config"] [unique_id "arAvpxIUd_OQHmdYqAiKSAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack