๐บ๐ธ
wordpresshosting.solutions
2026-06-15 04:46:34
(5 days ago)
Web app vulnerability scanning detected. Evidence: 34.22.44.173 - - [15/Jun/2026:04:46:34 +0000] "GE ...
show more
Web app vulnerability scanning detected. Evidence: 34.22.44.173 - - [15/Jun/2026:04:46:34 +0000] "GET /src/.git/config HTTP/1.1" 404 9745 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36"
34.22.44.173 - - [15/Jun/2026:04:46:34 +0000] "GET /api/.git/config HTTP/1.1" 404 4326 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/63.0.3239.132 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
paissangroup
2026-06-15 03:17:23
(5 days ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
4server
2026-06-15 03:11:44
(5 days ago)
[MonJun1505:11:39.2337692026][security2:error][pid3650296:tid3650300][client34.22.44.173:0]ModSecuri ...
show more
[MonJun1505:11:39.2337692026][security2:error][pid3650296:tid3650300][client34.22.44.173:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"giuseppeasaro.com\"][uri\"/.git/config\"][unique_id\"ai9ta4Z-XF-x1qSNvzerMQAAAIE\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 02:52:49
(5 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
Matthew Ping
2026-06-15 02:45:02
(5 days ago)
ModSecurity rule 949110 triggered on dedicated4785. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐บ๐ธ
Matthew Ping
2026-06-15 02:15:02
(5 days ago)
ModSecurity rule 949110 triggered on wp2. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 02:13:24
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.173 (173.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.173 (173.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:13:20.397548 2026] [security2:error] [pid 26100:tid 26100] [client 34.22.44.173:49540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.spacebooger.com"] [uri "/app/.git/config"] [unique_id "ai9fwAALXAH53y52JkJpEAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
dominioz
2026-06-15 01:57:18
(5 days ago)
2026-06-15 01:56:34 GET /web/.git/config - - 34.22.44.173 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.1;+Win6 ...
show more
2026-06-15 01:56:34 GET /web/.git/config - - 34.22.44.173 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.1;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/75.0.3770.100+Safari/537.36+OPR/62.0.3331.99 - 404 5377
2026-06-15 01:56:34 GET /assets/.git/config - - 34.22.44.173 HTTP/1.1 Mozilla/5.0+(Linux;+Android+9;+POT-LX1)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/75.0.3770.101+Mobile+Safari/537.36 - 404 5383
2026-06-15 01:56:34 GET /dist/.git/config - - 34.22.44.173 HTTP/1.1 Mozilla/5.0+(Windows+NT+6.1;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/74.0.3729.157+Safari/537.36 - 404 5379
2026-06-15 01:56:34 GET /build/.git/config - - 34.22.44.173 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+WOW64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/76.0.3809.100+Safari/537.36+OPR/63.0.3368.35 - 404 5381
...
show less
Web App Attack
๐ฆ๐บ
aranguren.org
2026-06-15 01:56:19
(5 days ago)
34.22.44.173 - - [15/Jun/2026:11:56:18 +1000] "GET /.git/config HTTP/1.1" 404 993 "-" "Mozilla/5.0 ( ...
show more
34.22.44.173 - - [15/Jun/2026:11:56:18 +1000] "GET /.git/config HTTP/1.1" 404 993 "-" "Mozilla/5.0 (Symbian/3; Series60/5.2 NokiaE7-00/010.016; Profile/MIDP-2.1 Configuration/CLDC-1.1 ) AppleWebKit/525 (KHTML, like Gecko) Version/3.0 BrowserNG/7.2.7.3 3gpp-gba"
34.22.44.173 - - [15/Jun/2026:11:56:19 +1000] "GET /v2/.git/config HTTP/1.1" 404 993 "-" "Mozilla/5.0 (Linux; Android 9; SM-N950U) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
34.22.44.173 - - [15/Jun/2026:11:56:19 +1000] "GET /web/.git/config HTTP/1.1" 404 993 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.77 Safari/537.36"
34.22.44.173 - - [15/Jun/2026:11:56:19 +1000] "GET /v1/.git/config HTTP/1.1" 404 993 "-" "Mozilla/5.0 (Linux; Android 9; COL-L29) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
34.22.44.173 - - [15/Jun/2026:11:56:19 +1000] "GET /www/.git/config HTTP/1.1" 404 993 "-" "Mozilla/5.0 (Windows NT 6
...
show less
Bad Web Bot
๐บ๐ธ
itsnixk
2026-06-15 01:40:05
(5 days ago)
(mod_security) mod_security (id:930130) triggered by 34.22.44.173 (US/United States/173.44.22.34.bc. ...
show more
(mod_security) mod_security (id:930130) triggered by 34.22.44.173 (US/United States/173.44.22.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sun Jun 14 21:40:01.281762 2026] [security2:error] [pid 365356:tid 365492] [client 34.22.44.173:49566] ModSecurity: Access denied with code 406 (phase 1). Matched phrase ".git/" at REQUEST_FILENAME. [file "/etc/modsecurity.d/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "150"] [id "930130"] [msg "Restricted File Access Attempt"] [redacted] [severity "CRITICAL"] [ver "OWASP_CRS/4.26.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/ATTACK-LFI"] [tag "capec/1000/255/153/126"] [redacted] [uri "/v1/.git/config"] [unique_id "ai9X8Sa3_qq2ryAgC2nwGgAAADU"]
show less
Port Scan
๐จ๐ญ
Origon
2026-06-15 01:34:19
(5 days ago)
http-sensitive-files - IP: 34.22.44.173 - time="2026-06-15T03:34:18+02:00" level=info msg="(555f66b ...
show more
http-sensitive-files - IP: 34.22.44.173 - time="2026-06-15T03:34:18+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.22.44.173 (US/396982) : 4h ban on Ip 34.22.44.173" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:31:20
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.173 (173.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.173 (173.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:31:13.575995 2026] [security2:error] [pid 15876:tid 15876] [client 34.22.44.173:45960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.solporpoise.com.herston.net"] [uri "/v2/.git/config"] [unique_id "ai9V4U4bNST1rcs4wlec2gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
webanyone
2026-06-15 00:45:30
(5 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:28:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.173 (173.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.173 (173.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:28:17.432137 2026] [security2:error] [pid 14137:tid 14137] [client 34.22.44.173:41588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "perkowski.net"] [uri "/v2/.git/config"] [unique_id "ai9HIfcjH21jyteJWvHFWQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-15 00:07:44
(5 days ago)
Abuse Detected (40)
Brute-Force
Web App Attack