|
๐ฒ๐ฝ
octageeks.com
|
|
Wordpress malicious attack:[octablocked]
|
Web App Attack
|
|
|
๐ฉ๐ช
Starburst SysOp Team
|
|
Host header is a numeric IP address. Pattern match "(?:^( (920350-nue6-2)
|
Hacking
Bad Web Bot
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 03:39:29.143746 2026] [security2:error] [pid 31668:tid 31668] [client 34.129.43.177:34058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.adventiststoday.com"] [uri "/.git/config"] [unique_id "ahafsXvtgw8rX6SMuCs-1AAAACQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
Anonymous
|
|
WAF repeated trigger detected by Fail2Ban
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 01:05:58.709484 2026] [security2:error] [pid 23082:tid 23082] [client 34.129.43.177:53810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.saltyrootsyogaco.com"] [uri "/.git/config"] [unique_id "ahZ7tivl6bvHe8QDTf9jPwAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 00:17:03.197603 2026] [security2:error] [pid 24486:tid 24486] [client 34.129.43.177:52806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.drgas.com"] [uri "/.git/config"] [unique_id "ahZwP9m--8piDvLViclrSgAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:56:31.665543 2026] [security2:error] [pid 30639:tid 30639] [client 34.129.43.177:60232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.catherineclayton.com"] [uri "/.git/config"] [unique_id "ahZrb4M-pUaLCGyvDpYlOwAAAHU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:29:47.041866 2026] [security2:error] [pid 17089:tid 17089] [client 34.129.43.177:47596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.egret.us"] [uri "/.git/config"] [unique_id "ahZlK0w3xPPsDQU20hKBqwAAACg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
Blexyel
|
|
34.129.43.177 - - [27/May/2026:04:12:10 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 ...
show more
34.129.43.177 - - [27/May/2026:04:12:10 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (Linux; Android 9; Nokia 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.143 Mobile Safari/537.36" "pingusmc.org"
...
show less
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:35:35.870281 2026] [security2:error] [pid 4449:tid 4449] [client 34.129.43.177:54950] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gdrankin.com"] [uri "/.git/config"] [unique_id "ahY8VxK2CVHwIYTNFRBwxQAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
NXTwoThou
|
|
/.git/config
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 19:51:40.991314 2026] [security2:error] [pid 8837:tid 8837] [client 34.129.43.177:52032] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aacoustics.com"] [uri "/.git/config"] [unique_id "ahYyDDdn15sjQUeYRvZTrQAAAA8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ต๐ฑ
Roper123
|
|
Web app attack
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.129.43.177 (177.43.129.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 18:17:45.853761 2026] [security2:error] [pid 29519:tid 29519] [client 34.129.43.177:57710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.bvidisplay.com"] [uri "/.git/config"] [unique_id "ahYcCdBJ646_mlWoxUA3OgAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ญ๐บ
bcsaba
|
|
Probing for .git:
34.129.43.177 - - [27/May/2026:00:03:45 +0200] "GET /.git/config HTTP/1.1" 400 230 ...
show more
Probing for .git:
34.129.43.177 - - [27/May/2026:00:03:45 +0200] "GET /.git/config HTTP/1.1" 400 230 "-" "Mozilla/5.0 (X11; U; Linux; i686; en-US; rv:1.6) Gecko Debian/1.6-7"
show less
|
Web App Attack
|
|