๐ฟ๐ฆ
conure.sh
2026-09-22 12:05:03
(3 hours ago)
csagent: score 20.0: secrets grab x2; 2 domain(s) in -2s
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-22 05:14:32
(10 hours ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ซ๐ท
masterguru
2026-09-22 01:08:07
(14 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐ฌ๐ง
andypiper
2026-09-22 01:00:21
(14 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 00:40:44
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:40:38.583695 2026] [security2:error] [pid 23861:tid 23861] [client 34.56.170.231:38086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.albertawaterjet.com"] [uri "/.git/config"] [unique_id "arHOhi6RLnbr4jmwpt0TmgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 00:16:45
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:16:41.116089 2026] [security2:error] [pid 4354:tid 4354] [client 34.56.170.231:50112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.alameeran.net"] [uri "/.git/config"] [unique_id "arHI6T238o1Q-Eq2lr5xegAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-22 00:07:00
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 23:01:07
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:01:00.799293 2026] [security2:error] [pid 32668:tid 32668] [client 34.56.170.231:58014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aivosminerals.com"] [uri "/.git/config"] [unique_id "arG3LAsMPv03vFCmWD1pvgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
UnixPrime
2026-09-21 22:23:00
(17 hours ago)
34.56.170.231 - - [22/Sep/2026:00:22:56 +0200] "GET /.git/config HTTP/1.1" 404 4122 "-" "-"
34.56.17 ...
show more
34.56.170.231 - - [22/Sep/2026:00:22:56 +0200] "GET /.git/config HTTP/1.1" 404 4122 "-" "-"
34.56.170.231 - - [22/Sep/2026:00:22:58 +0200] "GET /.git/config HTTP/1.1" 404 118 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 21:50:17
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:50:11.265129 2026] [security2:error] [pid 8274:tid 8274] [client 34.56.170.231:56858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aim-controls.com"] [uri "/.git/config"] [unique_id "arGmk_AHFEF9eCo93pNodAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 21:17:38
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:17:31.468401 2026] [security2:error] [pid 23645:tid 23645] [client 34.56.170.231:35586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aico-sal.com"] [uri "/.git/config"] [unique_id "arGe620cDrO_bDVzOhw_3wAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
s@ch@
2026-09-21 21:00:01
(18 hours ago)
Jail: plesk-modsecurity | Web application attack (Plesk ModSecurity)
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-21 20:56:13
(18 hours ago)
cloudlinux2 fail2ban: 2026-09-21 22:10:14,701 fail2ban.filter [1598]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-21 22:10:14,701 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 34.56.170.231 - 2026-09-21 22:10:14cloudlinux2 fail2ban: 2026-09-21 22:10:16,504 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 34.56.170.231 - 2026-09-21 22:10:16cloudlinux2 fail2ban: 2026-09-21 22:10:11,986 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 105.154.7.218 - 2026-09-21 22:10:11cloudlinux2 fail2ban: 2026-09-21 22:10:12,699 fail2ban.filter [1598]: INFO [recidive] Found 105.154.7.218 - 2026-09-21 22:10:12cloudlinux2 fail2ban: 2026-09-21 22:10:12,690 fail2ban.actions [1598]: NOTICE [plesk-modsecurity] Ban 105.154.7.218cloudlinux2 fail2ban: 2026-09-21 22:11:31,803 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 47.79.200.214 - 2026-09-21 22:11:31cloudlinux2 fail2ban: 2026-09-21 22:12:11,868 fail2ban.filter [1598]: INFO [plesk-modsecurity] Found 45.138.12.6 - 2026-09-21 22:12:11cloudlinux2 fail2ban: 2026-09-
show less
Brute-Force
๐ฉ๐ช
BlueWire Hosting
2026-09-21 20:44:52
(18 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 20:41:23
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.56.170.231 (231.170.56.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:41:18.872973 2026] [security2:error] [pid 27210:tid 27210] [client 34.56.170.231:50736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ahelfrick.com"] [uri "/.git/config"] [unique_id "arGWbsnAfTJ-eGHwOqimQgAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack