π©πͺ
netclix.gr
2026-09-17 18:58:31
(1 hour ago)
(mod_security) mod_security triggered on hostname [redacted] 34.185.249.45 (DE/Germany/45.249.185.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.185.249.45 (DE/Germany/45.249.185.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
Anonymous
2026-09-17 18:57:31
(2 hours ago)
Blocked by ModSec and CSF
Port Scan
πΊπΈ
TPI-Abuse
2026-09-17 16:35:17
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 12:35:13.938602 2026] [security2:error] [pid 26513:tid 26513] [client 34.185.249.45:47520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johncyphers.com"] [uri "/.git/config"] [unique_id "aqwWwbULCj1rRAt03aiuYwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Aetherweb Ark
2026-09-17 16:29:11
(4 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.185.249.45 (DE/Germany/45.249.185.34.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 34.185.249.45 (DE/Germany/45.249.185.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 15:55:24
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 11:55:19.608715 2026] [security2:error] [pid 22298:tid 22298] [client 34.185.249.45:56746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnberk.com"] [uri "/.git/config"] [unique_id "aqwNZ009U81uTzEeQqJT_AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 15:34:18
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 11:34:13.386195 2026] [security2:error] [pid 32169:tid 32169] [client 34.185.249.45:33956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnandramonadunn.com"] [uri "/.git/config"] [unique_id "aqwIdcJjBgfkdUrGsfw1QwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 14:28:27
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 10:28:21.653397 2026] [security2:error] [pid 19466:tid 19466] [client 34.185.249.45:50658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "john-bell-associates.com"] [uri "/.git/config"] [unique_id "aqv5BbXKBCCxGyOOr1DvZwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 14:11:05
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.249.45 (45.249.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 10:10:59.239329 2026] [security2:error] [pid 19532:tid 19532] [client 34.185.249.45:40696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "joharchi.com"] [uri "/.git/config"] [unique_id "aqv082WelsERUnu0mVyW-AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΈπͺ
vaia.cloud
2026-09-17 14:10:02
(6 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
π©πͺ
ghostwarriors
2026-09-17 13:50:06
(7 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
π¨π
zynex
2026-09-17 13:47:22
(7 hours ago)
URL Probing: /.env
Web App Attack
π©πͺ
yitzhaq
2026-09-17 13:44:48
(7 hours ago)
34.185.249.45 - - [17/Sep/2026:15:44:45 +0200] "GET /.env.dist HTTP/1.1" 404 515 "-" "Mozilla/5.0 (W ...
show more
34.185.249.45 - - [17/Sep/2026:15:44:45 +0200] "GET /.env.dist HTTP/1.1" 404 515 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.185.249.45 - - [17/Sep/2026:15:44:45 +0200] "GET /.env.swp HTTP/1.1" 404 515 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.185.249.45 - - [17/Sep/2026:15:44:45 +0200] "GET /.env~ HTTP/1.1" 404 515 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.185.249.45 - - [17/Sep/2026:15:44:45 +0200] "GET /.env1 HTTP/1.1" 404 515 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.185.249.45 - - [17/Sep/2026:15:44:45 +0200] "GET /.env2 HTTP/1.1" 404 515 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.185.249.45 - -
show less
Bad Web Bot
π³π±
e.fierstra
2026-09-17 13:22:14
(7 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-09-17 12:56:55
(8 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
Anonymous
2026-09-17 12:07:33
(8 hours ago)
IP banned by Fail2Ban due to multiple malicious requests on Nginx
Brute-Force
SSH
Web App Attack