๐ณ๐ฑ
Alt255
2026-09-15 15:03:31
(18 hours ago)
[topuurbd] Web exploit scanning: 3 suspicious requests detected by fail2ban jail <name>. Example: 34 ...
show more
[topuurbd] Web exploit scanning: 3 suspicious requests detected by fail2ban jail <name>. Example: 34.16.210.59 - - \[11/Sep/2026:00:25:00 +0200\] "GET /.git/config HTTP/1.1" 307 344 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
34.16.210.59 - - \[11/Sep/2026:00:25:00 +0200\] "GET /.env HTTP/1.1" 307 344 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
34.16.210.59 - - \[11/Sep/2026:00:25:00 +0200\] "GET /.env.local HTTP/1.1" 307 344 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-09-15 05:58:08
(1 day ago)
[TueSep1507:58:03.4186502026][security2:error][pid3879735:tid3880019][client34.16.210.59:0]ModSecuri ...
show more
[TueSep1507:58:03.4186502026][security2:error][pid3879735:tid3880019][client34.16.210.59:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpcalendars.annunci-ticino.ch\"][uri\"/.git/config\"][unique_id\"aqjea1wh62I60VLUlPlMCAAAAQ4\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 05:27:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 01:27:48.215184 2026] [security2:error] [pid 19507:tid 19507] [client 34.16.210.59:33366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.angelsofrhodeisland.com"] [uri "/.git/config"] [unique_id "aqjXVKz3z_MOv6ClBRrKOQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-15 04:49:48
(1 day ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 2s
Web App Attack
๐ฆ๐บ
rubixstudios
2026-09-15 04:10:04
(1 day ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 03:05:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 23:05:24.662781 2026] [security2:error] [pid 17513:tid 17513] [client 34.16.210.59:40284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.alrightletsgo.com"] [uri "/.git/config"] [unique_id "aqi19FEh0eZUrPjufiIZjwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-14 23:02:47
(1 day ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-14 22:57:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 18:57:55.931082 2026] [security2:error] [pid 9536:tid 9536] [client 34.16.210.59:46474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.agingworkforcenews.com"] [uri "/.git/config"] [unique_id "aqh781Tbaq3tARNwkqfbuAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 20:16:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 16:15:59.127145 2026] [security2:error] [pid 17497:tid 17497] [client 34.16.210.59:60430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.acmax.com"] [uri "/.git/config"] [unique_id "aqhV_9f5Mn-FjOfStDFlAQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 19:35:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 15:35:31.308314 2026] [security2:error] [pid 29908:tid 29949] [client 34.16.210.59:44282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.absurdotron.com"] [uri "/.git/config"] [unique_id "aqhMgx9V5fxMvtHoEBS2RwAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 19:08:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 15:08:13.769781 2026] [security2:error] [pid 11668:tid 11668] [client 34.16.210.59:40944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.abdulhameeds.art"] [uri "/.git/config"] [unique_id "aqhGHa3i5nNrHCJ_WkEcVgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-09-14 18:33:59
(1 day ago)
[MonSep1420:33:54.7481502026][security2:error][pid2165281:tid2165366][client34.16.210.59:0]ModSecuri ...
show more
[MonSep1420:33:54.7481502026][security2:error][pid2165281:tid2165366][client34.16.210.59:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpcalendars.aaaa6877.org\"][uri\"/.env.bak\"][unique_id\"aqg-EnZqE0cgc9sNc86_SAAAAMc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 16:41:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.16.210.59 (59.210.16.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 12:41:43.599299 2026] [security2:error] [pid 19825:tid 19825] [client 34.16.210.59:38438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.179vfs.com"] [uri "/.git/config"] [unique_id "aqgjx4H4jIVgQu87_R48bgAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-13 23:59:52
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐จ๐ญ
sternwart
2026-09-13 22:07:38
(2 days ago)
Automatisch erkannt: Zugriff auf /.git/config (coaching-planet.ch)
Web App Attack
Bad Web Bot