๐ฆ๐บ
rubixstudios
2026-09-23 18:25:03
(7 hours ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-23 17:54:25
(8 hours ago)
[formsbd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[formsbd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.50.103.57 - - [23/Sep/2026:19:54:04 +0200] "GET /.git/config HTTP/1.1" 301 514 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-23 10:31:27
(15 hours ago)
Excessive 404/403 errors
Brute-Force
๐ช๐ธ
pipeline.es
2026-09-23 09:54:25
(16 hours ago)
Web scanning / probing for vulnerable paths
Port Scan
Web App Attack
๐ช๐ธ
pipeline.es
2026-09-22 16:42:03
(1 day ago)
Web scanning / probing for vulnerable paths | URL: /.env.old | Evidence: terminalb.pt 34.50.103.57 - ...
show more
Web scanning / probing for vulnerable paths | URL: /.env.old | Evidence: terminalb.pt 34.50.103.57 - - [22/Sep/2026:18:41:35 +0200] \"GET /.env.old HTTP/1.1\" 404 22371 \"-\" \"Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=ID | ASN: GOOGLE-CLOUD-PLATFORM | Country: ID
show less
Port Scan
Web App Attack
๐ฎ๐น
Inartis
2026-09-22 16:15:34
(1 day ago)
34.50.103.57 - - [22/Sep/2026:18:15:31 +0200] "GET /.git/config HTTP/1.1" 403 179 "-" "Mozilla/5.0 ( ...
show more
34.50.103.57 - - [22/Sep/2026:18:15:31 +0200] "GET /.git/config HTTP/1.1" 403 179 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.50.103.57 - - [22/Sep/2026:18:15:32 +0200] "GET /.env HTTP/1.1" 403 179 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.50.103.57 - - [22/Sep/2026:18:15:33 +0200] "GET /.env.local HTTP/1.1" 403 5547 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 10:39:48
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-22 09:27:51
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-22 04:42:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 00:42:10.486247 2026] [security2:error] [pid 14699:tid 14699] [client 34.50.103.57:58210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.testing.ironsightsarmory.com"] [uri "/.git/config"] [unique_id "arIHIi585DORaUednndAkgAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 23:39:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:39:30.650785 2026] [security2:error] [pid 21311:tid 21311] [client 34.50.103.57:45556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test.handyrehab.com"] [uri "/.git/config"] [unique_id "arHAMp0RnPqOxaUzQCAk1AAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 22:03:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 18:03:48.285691 2026] [security2:error] [pid 8517:tid 8536] [client 34.50.103.57:42290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test.giere.us"] [uri "/.git/config"] [unique_id "arGpxGe8CTWTIbhP1u4R3wAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 20:26:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:25:55.503555 2026] [security2:error] [pid 27342:tid 27342] [client 34.50.103.57:50648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test.flyingdodopublications.com"] [uri "/.git/config"] [unique_id "arGS0w3zUsLwvWyWqkj35wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 00:08:18
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 20:08:12.465986 2026] [security2:error] [pid 13230:tid 13230] [client 34.50.103.57:42696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.travel.enchantmenttours.com"] [uri "/.git/config"] [unique_id "arB1bCyP30gGHcr4OQEZkgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 21:53:26
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.103.57 (57.103.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:53:20.446870 2026] [security2:error] [pid 7645:tid 7645] [client 34.50.103.57:47250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.toxicwater.helpkccare.org"] [uri "/.git/config"] [unique_id "arBV0G5Xa9Ziao8sNJ6GSwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 18:15:04
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack