๐ฉ๐ช
klaus_ph
2026-09-23 13:12:16
(15 hours ago)
2026-09-23 00:32:38,997 fail2ban.actions [535885]: NOTICE [ipblocklist] Ban 34.142.141.217
. ...
show more
2026-09-23 00:32:38,997 fail2ban.actions [535885]: NOTICE [ipblocklist] Ban 34.142.141.217
...
show less
Bad Web Bot
๐ซ๐ท
SpaceHost-Server
2026-09-22 22:23:43
(1 day ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 01:50:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 21:50:30.585447 2026] [security2:error] [pid 32481:tid 32481] [client 34.142.141.217:54174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.intellectualcapitalmanagementsystems.com"] [uri "/api/v1/.env"] [unique_id "arHe5kb_wBGchTAVAOKAnAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 01:46:13
(2 days ago)
Portscan: TCP/8443 (3x), TCP/8080 (3x)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-22 00:46:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:46:05.470293 2026] [security2:error] [pid 27900:tid 27900] [client 34.142.141.217:35824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.islandimagegallery.com"] [uri "/@fs/app/.env"] [unique_id "arHPzbJn7nim2um5QeFbHAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 00:20:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:20:35.085708 2026] [security2:error] [pid 7806:tid 7806] [client 34.142.141.217:39884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jamesmsmall.com"] [uri "/workspace/.env"] [unique_id "arHJ05To8evmRfSS8Hd70gAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
NotCool
2026-09-21 23:56:43
(2 days ago)
(CRAWLDELAY) Generic Bot Crawl-delay Violation 34.142.141.217 (SG/Singapore/217.141.142.34.bc.google ...
show more
(CRAWLDELAY) Generic Bot Crawl-delay Violation 34.142.141.217 (SG/Singapore/217.141.142.34.bc.googleusercontent.com): 50 in the last 3600 secs
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-21 23:43:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:43:46.321029 2026] [security2:error] [pid 7777:tid 7777] [client 34.142.141.217:47898] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.intercotrading.com"] [uri "/@fs/app/.env"] [unique_id "arHBMmBOc9W6pWVbmwAWDAAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-09-21 23:40:24
(2 days ago)
240 requests with url.path */@fs/*
102 requests with url.path */proc/*
Brute-Force
Bad Web Bot
๐ฌ๐ง
consul.to
2026-09-21 23:02:04
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
konseptit
2026-09-21 22:39:50
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.142.141.217 (SG/Singapore/217.141.14 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.142.141.217 (SG/Singapore/217.141.142.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-21 22:35:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.141.217 (217.141.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 18:35:43.177255 2026] [security2:error] [pid 1412:tid 1412] [client 34.142.141.217:55870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jaojoco.com"] [uri "/.git/config"] [unique_id "arGxPwETm-MxVaWPUlNLJwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-21 22:22:19
(2 days ago)
Brute-Force
Web App Attack
๐ฉ๐ช
33three
2026-09-21 22:09:38
(2 days ago)
Fail2Ban jail WebAttack triggered
Brute-Force
๐บ๐ธ
robotstxt
2026-09-21 22:00:35
(2 days ago)
34.142.141.217 - - [21/Sep/2026:21:59:31 +0000] "GET /.profile HTTP/2.0" 403 17813 "https://www.inte ...
show more
34.142.141.217 - - [21/Sep/2026:21:59:31 +0000] "GET /.profile HTTP/2.0" 403 17813 "https://www.internationalcannabisawards.com/.profile" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)" "-" edge="34.142.141.217"
34.142.141.217 - - [21/Sep/2026:21:59:31 +0000] "GET /@fs/app/.env?raw?? HTTP/2.0" 403 17813 "https://www.internationalcannabisawards.com/@fs/app/.env?raw??" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot" "-" edge="34.142.141.217"
34.142.141.217 - - [21/Sep/2026:21:59:31 +0000] "GET /@fs/src/.env?raw?? HTTP/2.0" 403 17813 "https://www.internationalcannabisawards.com/@fs/src/.env?raw??" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.deepseek.com/)" "-" edge="34.142.141.217"
34.142.141.217 - - [21/Sep/2026:21:59:32 +0000] "GET /static//.env HTTP/2.0" 403 20 "https://www.internationalcannabisawards.com/static//.env"
...
show less
Web App Attack