๐ธ๐ฎ
administrator
2026-09-22 22:07:14
(15 hours ago)
2026-09-22 00:00:07,092 fail2ban.actions [1182]: NOTICE [apache-auth] Ban 34.153.174.211
202 ...
show more
2026-09-22 00:00:07,092 fail2ban.actions [1182]: NOTICE [apache-auth] Ban 34.153.174.211
2026-09-22 00:00:07,092 fail2ban.actions [1182]: NOTICE [apache-auth] Ban 34.153.174.211
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐ธ๐ฎ
administrator
2026-09-06 22:00:28
(2 weeks ago)
2026-09-06 00:00:37,879 fail2ban.actions [1054]: NOTICE [apache-botsearch] Ban 34.153.174.21 ...
show more
2026-09-06 00:00:37,879 fail2ban.actions [1054]: NOTICE [apache-botsearch] Ban 34.153.174.211
2026-09-06 00:04:28,288 fail2ban.actions [1054]: NOTICE [apache-badbots] Ban 34.153.174.211
2026-09-07 00:00:25,761 fail2ban.actions [1054]: NOTICE [apache-auth] Ban 34.153.174.211
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
IRISIO
2026-08-08 16:30:18
(1 month ago)
scans/SQL injection/spam posts : 121 queries
Web App Attack
SQL Injection
๐ฎ๐น
clamehost.it
2026-08-08 14:48:23
(1 month ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
๐ซ๐ฎ
NoaQT
2026-08-08 14:17:29
(1 month ago)
2026-08-08T14:17:28.169235+00:00 ingress-1 haproxy[11056]: 34.153.174.211:48642 [08/Aug/2026:14:17:2 ...
show more
2026-08-08T14:17:28.169235+00:00 ingress-1 haproxy[11056]: 34.153.174.211:48642 [08/Aug/2026:14:17:28.168] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://mentis.si/.env.local HTTP/2.0"
2026-08-08T14:17:28.181955+00:00 ingress-1 haproxy[11056]: 34.153.174.211:48642 [08/Aug/2026:14:17:28.181] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://mentis.si/.env.old HTTP/2.0"
2026-08-08T14:17:28.198632+00:00 ingress-1 haproxy[11056]: 34.153.174.211:48642 [08/Aug/2026:14:17:28.197] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://mentis.si/admin/.env HTTP/2.0"
2026-08-08T14:17:28.242784+00:00 ingress-1 haproxy[11056]: 34.153.174.211:48642 [08/Aug/2026:14:17:28.242] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://mentis.si/secrets.json HTTP/2.0"
2026-08-08T14:17:28.244438+00:00 ingress-1 haproxy[11056]: 34.153.174.211:48642 [08/Aug/2026:14:17:28.24
...
show less
DDoS Attack
๐ซ๐ฎ
NoaQT
2026-08-08 13:49:17
(1 month ago)
2026-08-08T13:49:05.072984+00:00 ingress-1 haproxy[11056]: 34.153.174.211:36124 [08/Aug/2026:13:49:0 ...
show more
2026-08-08T13:49:05.072984+00:00 ingress-1 haproxy[11056]: 34.153.174.211:36124 [08/Aug/2026:13:49:05.071] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://git.mentis.si/user/login HTTP/2.0"
2026-08-08T13:49:05.152921+00:00 ingress-1 haproxy[11056]: 34.153.174.211:36124 [08/Aug/2026:13:49:05.151] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://git.mentis.si/_/static/assets/licenses.txt HTTP/2.0"
2026-08-08T13:49:05.227381+00:00 ingress-1 haproxy[11056]: 34.153.174.211:36124 [08/Aug/2026:13:49:05.226] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://git.mentis.si/api/swagger HTTP/2.0"
2026-08-08T13:49:05.233818+00:00 ingress-1 haproxy[11056]: 34.153.174.211:36124 [08/Aug/2026:13:49:05.233] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 40/40/0/0/0 0/0 "GET https://git.mentis.si/user/login HTTP/2.0"
2026-08-08T13:49:16.269872+00:00 ingress-1 haproxy[11056]: 34.153.174
...
show less
DDoS Attack
๐จ๐ญ
zynex
2026-08-08 12:16:10
(1 month ago)
URL Probing: /config/.env
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-08 12:09:39
(1 month ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-08 11:06:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.153.174.211 (211.174.153.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.153.174.211 (211.174.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 08 07:05:54.611565 2026] [security2:error] [pid 4047294:tid 4047294] [client 34.153.174.211:46452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ameliaschaaf.lawyer"] [uri "/.git/config"] [unique_id "ancNkmlq_73GwXE3tr25SQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-08 11:05:01
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ฎ
Some Body
2026-08-08 10:52:30
(1 month ago)
Aggressive web scan
Brute-Force
Web App Attack
๐ฉ๐ช
MBombeck
2026-08-08 10:51:16
(1 month ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-08-08 10:44:00
(1 month ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-08 10:20:54
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 34.153.174.211 (211.174.153.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.153.174.211 (211.174.153.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 08 06:20:51.318426 2026] [security2:error] [pid 3003222:tid 3003222] [client 34.153.174.211:48314] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.z-mgmt.com|F|2"] [data ".conf"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.z-mgmt.com"] [uri "/rclone.conf"] [unique_id "ancDA3E-gQ30LLfWHWvQ-QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
webko.si
2026-08-08 10:20:18
(1 month ago)
RBG: Bruteforce web app access, URI detail: '/.git/config'.
Web App Attack