🇫🇷
Catalin Negru
2026-09-07 01:57:57
(5 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
🇺🇸
TPI-Abuse
2026-09-06 23:40:00
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 19:39:55.114926 2026] [security2:error] [pid 14195:tid 14195] [client 34.166.218.115:52638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.advantstudio.com"] [uri "/.git/config"] [unique_id "ap35y39NtAA4FLOnInYPawAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 22:14:46
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:14:40.925117 2026] [security2:error] [pid 26203:tid 26203] [client 34.166.218.115:44938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.adamsclothiers.com"] [uri "/.git/config"] [unique_id "ap3l0AhqO5AWYC0sGuv5awAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 21:19:28
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 17:19:23.889535 2026] [security2:error] [pid 13218:tid 13218] [client 34.166.218.115:56938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.acmax.com"] [uri "/.git/config"] [unique_id "ap3Y2zsJKMoQldPsYac9nQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 20:07:38
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 16:07:31.528043 2026] [security2:error] [pid 10900:tid 10929] [client 34.166.218.115:49226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.absurdotron.com"] [uri "/.git/config"] [unique_id "ap3IAyHvZKjWnelz4ZHQEQAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 19:19:43
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 15:19:34.844584 2026] [security2:error] [pid 19371:tid 19371] [client 34.166.218.115:35640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.abdulhameeds.art"] [uri "/.git/config"] [unique_id "ap28xuAyOMOFwqaQEO6PZAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
4server
2026-09-06 18:18:50
(13 hours ago)
[SunSep0620:18:44.6866282026][security2:error][pid3221395:tid3221492][client34.166.218.115:0]ModSecu ...
show more
[SunSep0620:18:44.6866282026][security2:error][pid3221395:tid3221492][client34.166.218.115:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpcalendars.aaaa6877.org\"][uri\"/.env.bak\"][unique_id\"ap2uhJ30Hm6D67NynnQvGgAAAEE\"]
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 14:50:42
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 10:50:37.672338 2026] [security2:error] [pid 14381:tid 14381] [client 34.166.218.115:50794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.179vfs.com"] [uri "/.git/config"] [unique_id "ap19vbKH8nJ1X9sBXyDpMgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 14:20:58
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.218.115 (115.218.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 10:20:54.403491 2026] [security2:error] [pid 19067:tid 19067] [client 34.166.218.115:34638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.105kqv.com"] [uri "/.git/config"] [unique_id "ap12xpQALAK4koQDrYeE7AAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-06 14:05:04
(17 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack