๐ธ๐ช
vaia.cloud
2026-07-27 15:20:01
(18 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-07-27 14:54:54
(18 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐บ๐ธ
CBJ
2026-07-27 14:04:40
(19 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
entangled_mongoose
2026-07-27 13:10:01
(20 hours ago)
Probed /info.php.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 12:06:55
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:06:50.714360 2026] [security2:error] [pid 3568897:tid 3568897] [client 34.235.117.73:50270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "files.nautos-usa.com"] [uri "/.git/config"] [unique_id "amdJ2hgoSmAF27dHkLipKAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-07-27 07:37:03
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-27 06:57:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 02:57:00.926184 2026] [security2:error] [pid 3851824:tid 3851824] [client 34.235.117.73:49684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "file.kircali.net"] [uri "/.git/config"] [unique_id "amcBPMoBZTio6bWCSPzGSAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 05:43:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 01:43:43.190594 2026] [security2:error] [pid 3155143:tid 3155143] [client 34.235.117.73:52828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "filardi.org"] [uri "/.git/config"] [unique_id "ambwD1Cvog0tKSkQU0J_cgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-27 05:17:56
(1 day ago)
34.235.117.73 - - [27/Jul/2026:08:17:54 +0300] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 ...
show more
34.235.117.73 - - [27/Jul/2026:08:17:54 +0300] "GET /.git/config HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.235.117.73 - - [27/Jul/2026:08:17:55 +0300] "GET /.env HTTP/1.1" 404 705 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฎ๐น
clamehost.it
2026-07-26 04:18:13
(2 days ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
Anonymous
2026-07-26 02:27:47
(2 days ago)
(caddyscan) Scanner path probe from 34.235.117.73 (US/United States/ec2-34-235-117-73.compute-1.amaz ...
show more
(caddyscan) Scanner path probe from 34.235.117.73 (US/United States/ec2-34-235-117-73.compute-1.amazonaws.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 34.235.117.73 - - [26/Jul/2026:02:27:42 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 34.235.117.73 - - [26/Jul/2026:02:27:42 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 34.235.117.73 - - [26/Jul/2026:02:27:42 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 34.235.117.73 - - [26/Jul/2026:02:27:42 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 34.235.117.73 - - [26/Jul/2026:02:27:42 +0000] "GET /.env.staging HTTP/1.1"
show less
Port Scan
๐ฎ๐น
VHosting
2026-07-25 04:30:04
(3 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 04:07:24
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 00:07:20.750793 2026] [security2:error] [pid 1679225:tid 1679225] [client 34.235.117.73:33774] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fatjesus.com"] [uri "/.git/config"] [unique_id "amQ2eAk0gbFcM9wxHkn19wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 02:04:48
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amaz ...
show more
(mod_security) mod_security (id:210492) triggered by 34.235.117.73 (ec2-34-235-117-73.compute-1.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 22:04:44.007718 2026] [security2:error] [pid 3685151:tid 3685151] [client 34.235.117.73:48188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fastrealestatemedia.com"] [uri "/.git/config"] [unique_id "amQZvLSkcwdpvoWxTpZ4cAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
rdpguard.com
2026-07-25 01:04:10
(3 days ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force