๐ซ๐ท
dynamix
2026-09-20 22:11:17
(2 days ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-09-20 22:04:06
(2 days ago)
(nginxENVSCAN) nginx environment-file scanner detected from 34.21.151.52 (SG/Singapore/-/Singapore/5 ...
show more
(nginxENVSCAN) nginx environment-file scanner detected from 34.21.151.52 (SG/Singapore/-/Singapore/52.151.21.34.bc.googleusercontent.com)
show less
Hacking
๐ฉ๐ช
ghostwarriors
2026-09-20 21:50:05
(2 days ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
netman
2026-09-20 21:25:01
(2 days ago)
HTTP: 34.21.151.52 blocked because of 100 failures
...
DDoS Attack
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-20 21:03:56
(2 days ago)
cloudlinux2 fail2ban: 2026-09-20 22:59:13,120 fail2ban.filter [1597]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-20 22:59:13,120 fail2ban.filter [1597]: INFO [plesk-modsecurity] Found 34.21.151.52 - 2026-09-20 22:59:13cloudlinux2 fail2ban: 2026-09-20 22:59:12,504 fail2ban.filter [1597]: INFO [plesk-wordpress] Found 98.159.37.149 - 2026-09-20 22:59:11cloudlinux2 fail2ban: 2026-09-20 22:59:13,832 fail2ban.filter [1597]: INFO [plesk-modsecurity] Found 34.21.151.52 - 2026-09-20 22:59:13cloudlinux2 fail2ban: 2026-09-20 22:59:14,215 fail2ban.filter [1597]: INFO [plesk-modsecurity] Found 34.21.151.52 - 2026-09-20 22:59:14cloudlinux2 fail2ban: 2026-09-20 22:59:15,696 fail2ban.filter [1597]: INFO [recidive] Found 34.18.138.103 - 2026-09-20 22:59:15cloudlinux2 fail2ban: 2026-09-20 22:59:15,216 fail2ban.filter [1597]: INFO [plesk-modsecurity] Found 34.18.138.103 - 2026-09-20 22:59:15cloudlinux2 fail2ban: 2026-09-20 22:59:14,474 fail2ban.filter [1597]: INFO [recidive] Found 34.21.151.52 - 2026-09-20 22:59:14cloudlinux2 fail2ba
show less
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-20 20:30:43
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 16:41:07
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.21.151.52 (52.151.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.151.52 (52.151.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 12:41:00.345179 2026] [security2:error] [pid 21923:tid 21923] [client 34.21.151.52:39966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwtlaw.com"] [uri "/.git/config"] [unique_id "arAMnEFS0aP6ELO76D2d8wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 15:32:26
(3 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 14:52:42
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.21.151.52 (52.151.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.151.52 (52.151.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:52:35.361770 2026] [security2:error] [pid 32668:tid 32668] [client 34.21.151.52:34748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwieser.com"] [uri "/.git/config"] [unique_id "aq_zM9IsC3bf9gGs9auciAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 14:32:53
(3 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
Anonymous
2026-09-20 13:54:31
(3 days ago)
[ns67.kdns.gr] httpd-config-scan: sites=kapaweb.gr,www.kweb.gr; logs=/var/www/vhosts/kapaweb.gr/logs ...
show more
[ns67.kdns.gr] httpd-config-scan: sites=kapaweb.gr,www.kweb.gr; logs=/var/www/vhosts/kapaweb.gr/logs/access_ssl_log,/var/www/vhosts/system/kapaweb.gr/logs/access_ssl_log,/var/www/vhosts/system/kapaweb.gr/logs/proxy_access_ssl_log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
๐จ๐ญ
zynex
2026-09-20 13:45:17
(3 days ago)
URL Probing: /server/.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:38:15
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.21.151.52 (52.151.21.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.151.52 (52.151.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:38:11.595190 2026] [security2:error] [pid 7490:tid 7490] [client 34.21.151.52:36806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwcccarshow.com"] [uri "/.git/config"] [unique_id "aq_hw7Gz43zxR3f9BJsKuQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-20 13:20:46
(3 days ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.21.151.52 - - [20/Sep/2026:15:20:39 +0200] "GET /.git/config HTTP/1.1" 301 625 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-20 13:14:28
(3 days ago)
Excessive 404/403 errors
Brute-Force