๐ซ๐ท
ecode hosting
2026-09-18 15:27:05
(1 hour ago)
Domain : adammed.com.tr
Rule : config
2026-09-18 15:03:05 10.100.1.20 GET /.git/config - 443 - 34.15 ...
show more
Domain : adammed.com.tr
Rule : config
2026-09-18 15:03:05 10.100.1.20 GET /.git/config - 443 - 34.15.176.49 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 - adammed.com.tr 404 8 0 286 351 232 - -
show less
Hacking
SQL Injection
Anonymous
2026-09-18 15:00:15
(2 hours ago)
http scanning for .env files
...
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 13:28:33
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 09:28:30.326244 2026] [security2:error] [pid 31209:tid 31235] [client 34.15.176.49:53008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adambarnard.com"] [uri "/.git/config"] [unique_id "aq08fsGahgHRcNfC6TA8RgAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
hbrks
2026-09-18 13:25:34
(3 hours ago)
19 attack(s) detected, such as these: {"event":"web_block","ip":"34.15.176.49","host":"adalta.info", ...
show more
19 attack(s) detected, such as these: {"event":"web_block","ip":"34.15.176.49","host":"adalta.info","request":"GET /pinfo.php HTTP/1.1","user_agent":"","reason":"Status-444","timestamp":"2026-09-18T13:25:34 00:00","logentry":"adalta.info 34.15.176.49 - - [18/Sep/2026:13:25:34 0000] \"GET /pinfo.php HTTP/1.1\" 444 0 \"-\" \"Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" \"-\""} * Report Details *: https://p4u.xyz/02SRMRWFXFE/1* IP Details *: https://p4u.xyz/02SRMRWFXFE/2
show less
Web Spam
Hacking
Bad Web Bot
๐ฉ๐ช
hbrks
2026-09-18 12:05:53
(5 hours ago)
19 attack(s) detected, such as these: {"event":"web_block","ip":"34.15.176.49","host":"adalta.info", ...
show more
19 attack(s) detected, such as these: {"event":"web_block","ip":"34.15.176.49","host":"adalta.info","request":"GET /pinfo.php HTTP/1.1","user_agent":"","reason":"Status-444","timestamp":"2026-09-18T12:05:53 00:00","logentry":"adalta.info 34.15.176.49 - - [18/Sep/2026:12:05:53 0000] \"GET /pinfo.php HTTP/1.1\" 444 0 \"-\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" \"-\""} * Report Details *: https://p4u.xyz/C3N74RKSNKS/1* IP Details *: https://p4u.xyz/C3N74RKSNKS/2
show less
Web Spam
Hacking
Bad Web Bot
๐ซ๐ฎ
paissangroup
2026-09-18 10:32:47
(6 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
kosada.com
2026-09-18 09:58:14
(7 hours ago)
Repeated requests for suspicious nonexistent URLs, for example: /.env.staging (HTTP/1.1 port 443, us ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /.env.staging (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
๐ฌ๐ง
Celtic
2026-09-17 18:55:27
(22 hours ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH
Anonymous
2026-09-17 17:44:10
(23 hours ago)
$f2bV_matches
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 15:50:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 11:50:37.294159 2026] [security2:error] [pid 27071:tid 27071] [client 34.15.176.49:37216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abaracadavara.com"] [uri "/.git/config"] [unique_id "aqwMTboLWufbiXgsMoAvkAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-09-17 15:28:47
(1 day ago)
34.15.176.49 - - [17/Sep/2026:17:28:45 +0200] "GET /.git/config HTTP/1.1" 301 560 "-" "Mozilla/5.0 ( ...
show more
34.15.176.49 - - [17/Sep/2026:17:28:45 +0200] "GET /.git/config HTTP/1.1" 301 560 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.15.176.49 - - [17/Sep/2026:17:28:46 +0200] "GET /.env HTTP/1.1" 301 546 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.15.176.49 - - [17/Sep/2026:17:28:46 +0200] "GET /.env.local HTTP/1.1" 301 558 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 14:24:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 10:24:40.440935 2026] [security2:error] [pid 17667:tid 17667] [client 34.15.176.49:41610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abakada.net"] [uri "/.git/config"] [unique_id "aqv4KABGQ3fqWbpGiQTgoQAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-17 14:02:41
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 13:46:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.15.176.49 (49.176.15.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 09:46:38.380282 2026] [security2:error] [pid 8532:tid 8555] [client 34.15.176.49:47308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abadie.com.uy"] [uri "/.git/config"] [unique_id "aqvvPoovwBRUlnK395JYGwAAAZU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
elcruzado.es
2026-09-17 13:44:29
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.15.176.49 (TH/Thailand/49.176.15.34. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.15.176.49 (TH/Thailand/49.176.15.34.bc.googleusercontent.com)
show less
SQL Injection