๐ท๐ด
clauss
2026-09-03 04:26:34
(3 hours ago)
34.17.145.246 - - [03/Sep/2026:07:26:33 +0300] "GET /.git/config HTTP/1.1" 401 36 "-" "Mozilla/5.0 ( ...
show more
34.17.145.246 - - [03/Sep/2026:07:26:33 +0300] "GET /.git/config HTTP/1.1" 401 36 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.17.145.246 - - [03/Sep/2026:07:26:34 +0300] "GET /.env.local HTTP/1.1" 401 36 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 22:27:41
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 18:27:36.295415 2026] [security2:error] [pid 9431:tid 9431] [client 34.17.145.246:34442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.skintormint.com"] [uri "/.git/config"] [unique_id "apii2JOlzT-0y_9ijMXAiQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 21:23:33
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 17:23:28.567383 2026] [security2:error] [pid 29119:tid 29119] [client 34.17.145.246:39670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.sinsky.net"] [uri "/.git/config"] [unique_id "apiT0PpAuzVrRuyTDc8lZQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-02 19:35:03
(12 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฉ๐ช
4server
2026-09-02 16:43:55
(15 hours ago)
[WedSep0218:43:49.1324282026][security2:error][pid1699384:tid1699438][client34.17.145.246:0]ModSecur ...
show more
[WedSep0218:43:49.1324282026][security2:error][pid1699384:tid1699438][client34.17.145.246:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpcontacts.serban.ch\"][uri\"/.env.bak\"][unique_id\"aphSRWIR3P6D4LXKHk67pQAAAFI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 15:28:35
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 11:28:29.134507 2026] [security2:error] [pid 27043:tid 27043] [client 34.17.145.246:53766] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.sebog.org"] [uri "/.git/config"] [unique_id "aphAnRVRrEEifJphNU0jRAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 14:02:52
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:02:47.143578 2026] [security2:error] [pid 28879:tid 28879] [client 34.17.145.246:51526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.scc1.us"] [uri "/.git/config"] [unique_id "apgshwCZk77i3eKPmH0VywAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 13:33:27
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:33:19.968481 2026] [security2:error] [pid 17295:tid 17295] [client 34.17.145.246:46868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.sawted.com"] [uri "/.git/config"] [unique_id "apgln7_xtS92T3oeHHANyQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
rubixstudios
2026-09-02 08:56:02
(22 hours ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:31:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:31:51.721667 2026] [security2:error] [pid 31028:tid 31028] [client 34.17.145.246:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rodrigoaldecoa.com"] [uri "/.git/config"] [unique_id "apfC1zcudEwbhD82kovEYwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:12:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:12:11.293592 2026] [security2:error] [pid 32034:tid 32034] [client 34.17.145.246:37264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.robtown.com"] [uri "/.git/config"] [unique_id "ape-O5b4_YNAjQdshcloRAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-02 01:50:24
(1 day ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐ฟ๐ฆ
conure.sh
2026-09-02 01:06:48
(1 day ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 2s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 22:09:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.145.246 (246.145.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 18:09:27.653151 2026] [security2:error] [pid 16145:tid 16145] [client 34.17.145.246:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ralphrichardson.com"] [uri "/.git/config"] [unique_id "apdNF6RCJxq7UWW5QCLUrgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-01 18:15:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack