π«π·
ACE-INFORMATIQUE.NC
2026-09-21 19:00:07
(2 hours ago)
Web App Attack blocked by Fail2ban
Web App Attack
Anonymous
2026-09-21 00:54:33
(20 hours ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
π³π±
e.fierstra
2026-09-21 00:30:50
(21 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-20 23:36:33
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:36:26.888029 2026] [security2:error] [pid 21493:tid 21493] [client 34.32.101.43:34610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.accbasilseeds.com"] [uri "/.git/config"] [unique_id "arBt-iivJSLG3KxK-UnKvQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
tmiland
2026-09-20 23:08:41
(22 hours ago)
Detected 181 connections from 34.32.101.43 last 10 minutes.; lone high-rate source (combined 362 req ...
show more
Detected 181 connections from 34.32.101.43 last 10 minutes.; lone high-rate source (combined 362 requests in both windows); Logs: 34.32.101.43 - - [21/Sep/2026:01:08:24 +0200] "GET / HTTP/1.1" 200 50385 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.32.101.43 - - [21/Sep/2026:01:08:24 +0200] "POST / HTTP/1.1" 405 552 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.32.101.43 - - [21/Sep/2026:01:08:24 +0200] "POST / HTTP/1.1" 405 552 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.32.101.43 - - [21/Sep/2026:01:08:24 +0200] "POST / HTTP/1.1" 405 552 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.32.101.43 - - [21/Sep/2026:01:08:24 +0200] "GET /.git/config HTTP/1.1" 404 2992 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTM
show less
DDoS Attack
Bad Web Bot
Web App Attack
π³π±
tmiland
2026-09-20 23:08:28
(22 hours ago)
(nginx_404) Dot directory Honeypot Trap 34.32.101.43 (DE/Germany/43.101.32.34.bc.googleusercontent.c ...
show more
(nginx_404) Dot directory Honeypot Trap 34.32.101.43 (DE/Germany/43.101.32.34.bc.googleusercontent.com): 2 in the last 3600 secs; IP: 34.32.101.43; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.32.101.43 - - [21/Sep/2026:01:08:24 +0200] "GET /.git/config HTTP/1.1" 404 2992 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 34.32.101.43 - - [21/Sep/2026:01:08:24 +0200] "GET /.env HTTP/1.1" 404 2992 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Brute-Force
πΊπΈ
Rocky Mountain Bioengineering Symposium
2026-09-20 23:01:28
(22 hours ago)
[Sun Sep 20 17:01:25.892372 2026] [authz_core:error] [pid 207859:tid 140602054272576] [client 34.32. ...
show more
[Sun Sep 20 17:01:25.892372 2026] [authz_core:error] [pid 207859:tid 140602054272576] [client 34.32.101.43:48708] AH01630: client denied by server configuration: /var/www/horde/.env.bak
[Sun Sep 20 17:01:28.645674 2026] [authz_core:error] [pid 207859:tid 140603841033792] [client 34.32.101.43:48708] AH01630: client denied by server configuration: /var/www/horde/.env.dist
[Sun Sep 20 17:01:28.755620 2026] [authz_core:error] [pid 207859:tid 140601475372608] [client 34.32.101.43:48708] AH01630: client denied by server configuration: /var/www/horde/.env.swp
...
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-09-20 22:50:44
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:50:37.040502 2026] [security2:error] [pid 32447:tid 32474] [client 34.32.101.43:59606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.abroma.com"] [uri "/.git/config"] [unique_id "arBjPbossd03YXV13rqkwwAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
dot.mg
2026-09-20 22:00:03
(23 hours ago)
Bad behaviour
Web Spam
πΊπΈ
TPI-Abuse
2026-09-20 21:57:40
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:57:36.529499 2026] [security2:error] [pid 10025:tid 10025] [client 34.32.101.43:35126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.abdulhameeds.art"] [uri "/.git/config"] [unique_id "arBW0KUkEZvkFJD1NADQLAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-09-20 21:03:07
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-20 20:37:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.101.43 (43.101.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 16:37:33.931222 2026] [security2:error] [pid 16361:tid 16376] [client 34.32.101.43:58964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.aaadatacom.com"] [uri "/.git/config"] [unique_id "arBEDdjQaG5a9ci0_dyINwAAAYs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
polycoda
2026-09-20 20:10:59
(1 day ago)
AutoBlock: π― Vulnerability Scanner (Non Decay-Based) - βοΈ Configuration File Access (Non Decay-Based ...
show more
AutoBlock: π― Vulnerability Scanner (Non Decay-Based) - βοΈ Configuration File Access (Non Decay-Based)
show less
Hacking
Bad Web Bot
Web App Attack
π¨π
ca
2026-09-20 19:00:55
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
π³π±
ConsulHosting
2026-09-20 18:39:42
(1 day ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack