๐ซ๐ท
mail.avx.gr
2026-07-23 11:31:27
(2 hours ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.126.80.106 - - [21/Jul/20 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.126.80.106 - - [21/Jul/2026:01:25:33 +0300] "GET /.git/config HTTP/1.1" 403 2435 "-" "-"
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-21 22:02:36
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-20.
show less
Web App Attack
SSH
Hacking
Anonymous
2026-07-21 04:20:19
(2 days ago)
Blocked by Datasoft WAF โ malicious traffic detected.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 01:37:30
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 21:37:22.773089 2026] [security2:error] [pid 28524:tid 28524] [client 34.126.80.106:48160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hacemostuvideoia.com.verdadesreales.com"] [uri "/.git/config"] [unique_id "al7NUneyxp1EeY70nha0TAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-21 01:23:57
(2 days ago)
cloudlinux2 fail2ban: 2026-07-21 03:18:59,554 fail2ban.filter [1927]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-07-21 03:18:59,554 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 45.131.194.122 - 2026-07-21 03:18:59cloudlinux2 fail2ban: 2026-07-21 03:19:03,840 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 45.131.194.122 - 2026-07-21 03:19:03cloudlinux2 fail2ban: 2026-07-21 03:19:02,623 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 216.73.163.151 - 2026-07-21 03:19:02cloudlinux2 fail2ban: 2026-07-21 03:20:37,335 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 45.3.54.68 - 2026-07-21 03:20:36cloudlinux2 fail2ban: 2026-07-21 03:20:50,365 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 34.126.80.106 - 2026-07-21 03:20:50cloudlinux2 fail2ban: 2026-07-21 03:20:47,485 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 104.207.52.174 - 2026-07-21 03:20:46cloudlinux2 fail2ban: 2026-07-21 03:21:39,133 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 45.131.193.82 - 2026-07-21 03:21:38cloudl
show less
Web App Attack
๐บ๐ธ
Epimetheus
2026-07-21 01:10:30
(2 days ago)
Unauthorized access attempts:
[GET] /.git/config
UA: Unknown
Web App Attack
๐บ๐ธ
mnsf
2026-07-21 01:05:08
(2 days ago)
Abuse Detected (22)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 00:36:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 20:36:17.486119 2026] [security2:error] [pid 9793:tid 9793] [client 34.126.80.106:39116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gurneysbottleshop.com"] [uri "/.git/config"] [unique_id "al6_AUhl7qMt3K0ebX2SqQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-07-21 00:20:21
(2 days ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 00:19:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 20:19:39.401685 2026] [security2:error] [pid 21056:tid 21056] [client 34.126.80.106:34994] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.guitarsouth.com"] [uri "/.git/config"] [unique_id "al67G5e3x4ynBhsBJSjK9AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-21 00:09:45
(2 days ago)
34.126.80.106 - - [20/Jul/2026:21:09:44 -0300] "GET /.git/config HTTP/1.1" 403 829 "-" "-"
...
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐ซ๐ท
masterguru
2026-07-21 00:05:55
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 00:00:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 20:00:37.574981 2026] [security2:error] [pid 3700625:tid 3700625] [client 34.126.80.106:33416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.guardmagic.com"] [uri "/.git/config"] [unique_id "al62pQh__aEoOBLQ5CF0zAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:45:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:45:27.688858 2026] [security2:error] [pid 11703:tid 11703] [client 34.126.80.106:60530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gsvip.com.ec"] [uri "/.git/config"] [unique_id "al6zFyENiTdemxVX1HdVuAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:26:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.126.80.106 (106.80.126.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:26:24.852805 2026] [security2:error] [pid 18925:tid 18925] [client 34.126.80.106:47040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.grupoimaginarte.com"] [uri "/.git/config"] [unique_id "al6uoA8GzHm8Mvwpj6yJ6AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack