๐ณ๐ฑ
Alt255
2026-09-17 03:38:34
(2 hours ago)
[ti-02ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-02ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.166.217.178 - - [17/Sep/2026:05:38:29 +0200] "GET /.git/config HTTP/1.1" 301 620 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 03:38:22
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:38:15.731247 2026] [security2:error] [pid 24617:tid 24617] [client 34.166.217.178:56902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hoofprints.us"] [uri "/.git/config"] [unique_id "aqtgp_MFDS09ZDlxX2M9SQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 02:42:06
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 22:42:02.170491 2026] [security2:error] [pid 32422:tid 32422] [client 34.166.217.178:42110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hongkonger.org"] [uri "/.git/config"] [unique_id "aqtTer3ziJhSvvi0S3P0nQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Webhoster
2026-09-17 02:22:53
(3 hours ago)
[2026-09-17 04:22:52] INFO - [GET] 34.166.217.178 - /.env.local - 403
[2026-09-17 04:22:52] INFO - [ ...
show more
[2026-09-17 04:22:52] INFO - [GET] 34.166.217.178 - /.env.local - 403
[2026-09-17 04:22:52] INFO - [GET] 34.166.217.178 - /.env.production - 200
...
show less
Hacking
Web App Attack
๐ฆ๐บ
rubixstudios
2026-09-16 18:38:03
(11 hours ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-09-16 14:35:03
(15 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 14:22:22
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:22:17.775429 2026] [security2:error] [pid 23879:tid 23879] [client 34.166.217.178:38350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.scc1.us"] [uri "/.git/config"] [unique_id "aqqmGVju2HskeayC2mwE0AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-09-16 13:34:00
(16 hours ago)
[WedSep1615:33:56.2569992026][security2:error][pid757825:tid757874][client34.166.217.178:0]ModSecuri ...
show more
[WedSep1615:33:56.2569992026][security2:error][pid757825:tid757874][client34.166.217.178:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpcalendars.akastudio.ch\"][uri\"/.env.bak\"][unique_id\"aqqaxJf7xZU7w_7gJakinQAAAE4\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-16 11:26:39
(18 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 09:20:22
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 05:20:15.167555 2026] [security2:error] [pid 5461:tid 5461] [client 34.166.217.178:50110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.advantstudio.com"] [uri "/.git/config"] [unique_id "aqpfT8EV64NEU-19apfFdQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 08:03:38
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 04:03:35.518499 2026] [security2:error] [pid 23103:tid 23103] [client 34.166.217.178:54964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.adamsclothiers.com"] [uri "/.git/config"] [unique_id "aqpNV5x8TyknCo-s_OwR0AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 06:11:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 02:11:06.154470 2026] [security2:error] [pid 29198:tid 29218] [client 34.166.217.178:47930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.absurdotron.com"] [uri "/.git/config"] [unique_id "aqoy-kdxN3HauWkksXCYmgAAAM0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 05:29:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 01:29:02.776479 2026] [security2:error] [pid 25131:tid 25131] [client 34.166.217.178:55884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.abdulhameeds.art"] [uri "/.git/config"] [unique_id "aqopHi5FRWCUJdIvwmfDkAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 02:47:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:47:03.178041 2026] [security2:error] [pid 2683:tid 2683] [client 34.166.217.178:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.365soft.top"] [uri "/.git/config"] [unique_id "aqoDJycg5p3WCukDcXi9QAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 01:40:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.217.178 (178.217.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:40:15.504375 2026] [security2:error] [pid 7152:tid 7152] [client 34.166.217.178:46988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.179vfs.com"] [uri "/.git/config"] [unique_id "aqnzfyda1EfMGMbKm0SrbgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack