๐ณ๐ฑ
Alt255
2026-09-16 03:30:04
(44 minutes ago)
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.150.93.47 - - [16/Sep/2026:05:29:54 +0200] "GET /.git/config HTTP/1.1" 200 14071 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-09-16 03:23:18
(51 minutes ago)
Suspicious URL access.
Web App Attack
๐ฌ๐ง
consul.to
2026-09-16 03:17:52
(56 minutes ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 00:01:42
(4 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-15 23:20:20
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.150.93.47 (47.93.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.93.47 (47.93.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 19:20:13.551927 2026] [security2:error] [pid 11873:tid 11873] [client 34.150.93.47:38022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.scermak.com"] [uri "/.git/config"] [unique_id "aqnSrQPY7m-fdb9bZto9kgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 21:36:52
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.150.93.47 (47.93.150.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.150.93.47 (47.93.150.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:36:47.669094 2026] [security2:error] [pid 9686:tid 9686] [client 34.150.93.47:44324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.scc1.us"] [uri "/.git/config"] [unique_id "aqm6bzUhLQWJFaEMi2Fi8wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
madaello
2026-09-15 19:21:39
(8 hours ago)
34.150.93.47 - - [15/Sep/2026:21:21:38 +0200] "GET /.git/config HTTP/1.1" 404 560 "-" "Mozilla/5.0 ( ...
show more
34.150.93.47 - - [15/Sep/2026:21:21:38 +0200] "GET /.git/config HTTP/1.1" 404 560 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.150.93.47 - - [15/Sep/2026:21:21:38 +0200] "GET /.env HTTP/1.1" 404 560 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.150.93.47 - - [15/Sep/2026:21:21:39 +0200] "GET /.env.local HTTP/1.1" 404 560 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.150.93.47 - - [15/Sep/2026:21:21:39 +0200] "GET /.env.production HTTP/1.1" 404 560 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.150.93.47 - - [15/Sep/2026:21:21:39 +0200] "GET /.env.staging HTTP/1.1" 404 560 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Port Scan
๐บ๐ธ
Lee Daniel
2026-09-15 17:02:08
(11 hours ago)
34.150.93.47 - - [15/Sep/2026:13:02:07 -0400] "GET /.env HTTP/1.1" 403 6301 "-" "Mozilla/5.0 (X11; L ...
show more
34.150.93.47 - - [15/Sep/2026:13:02:07 -0400] "GET /.env HTTP/1.1" 403 6301 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 16:27:25
(11 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-15 15:21:53
(12 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-15 15:10:04
(13 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-15 12:50:45
(15 hours ago)
Excessive 404/403 errors
Brute-Force
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-15 12:08:06
(16 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
LRob
2026-09-15 09:26:34
(18 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-15 09:26 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-15 08:50:47
(19 hours ago)
20 attempts against mh_ha-misbehave-ban on ceres
Brute-Force
Bad Web Bot
Web App Attack