๐ง๐ท
radardatelecom
2026-09-27 22:26:03
(2 days ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ฉ๐ช
klaus_ph
2026-09-27 22:15:41
(2 days ago)
2026-09-26 23:42:07,760 fail2ban.actions [8144]: NOTICE [ipblocklist] Ban 34.65.100.190
...
Bad Web Bot
๐ฉ๐ช
klaus_ph
2026-09-26 16:00:18
(3 days ago)
2026-09-25 18:05:24,267 fail2ban.actions [594716]: NOTICE [ipblocklist] Ban 34.65.100.190
.. ...
show more
2026-09-25 18:05:24,267 fail2ban.actions [594716]: NOTICE [ipblocklist] Ban 34.65.100.190
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-24 03:40:56
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:40:49.499745 2026] [security2:error] [pid 6333:tid 6333] [client 34.65.100.190:60568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.microscopicpablo.com"] [uri "/.git/config"] [unique_id "arSbwfTc7EzChTVPz-VduQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 02:04:08
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 22:04:00.075740 2026] [security2:error] [pid 15427:tid 15427] [client 34.65.100.190:56204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.greenlight.us"] [uri "/site/.git/config"] [unique_id "arSFELTvNmi4QpFJneOFCQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-23 20:12:09
(6 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
debestelapp
2026-09-23 20:00:11
(6 days ago)
Web App Attack
Anonymous
2026-09-23 18:58:58
(6 days ago)
automatically banned
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 18:52:22
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 14:52:15.956306 2026] [security2:error] [pid 22848:tid 22991] [client 34.65.100.190:46120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certificationwiki.com"] [uri "/src/.git/config"] [unique_id "arQf36ghVWYrQXcUtM5JIwAAAVg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Thibault Millant
2026-09-23 18:50:53
(6 days ago)
2026/09/23 20:50:53 [error] 1008#1008: *168331 access forbidden by rule, client: 34.65.100.190, serv ...
show more
2026/09/23 20:50:53 [error] 1008#1008: *168331 access forbidden by rule, client: 34.65.100.190, server: certifications.millant.ovh, request: "GET /public/.git/config HTTP/1.1", host: "certifications.millant.ovh"
2026/09/23 20:50:53 [error] 1008#1008: *168330 access forbidden by rule, client: 34.65.100.190, server: certifications.millant.ovh, request: "GET /www/.git/config HTTP/1.1", host: "certifications.millant.ovh"
2026/09/23 20:50:53 [error] 1008#1008: *168332 access forbidden by rule, client: 34.65.100.190, server: certifications.millant.ovh, request: "GET /app/.git/config HTTP/1.1", host: "certifications.millant.ovh"
2026/09/23 20:50:53 [error] 1011#1011: *168339 access forbidden by rule, client: 34.65.100.190, server: certifications.millant.ovh, request: "GET /var/www/.git/config HTTP/1.1", host: "certifications.millant.ovh"
2026/09/23 20:50:53 [error] 1008#1008: *168333 access forbidden by rule, client: 34.65.100.190, server: certifications.millant.ovh, request: "GET /html/.git/
...
show less
Brute-Force
Exploited Host
Web App Attack
๐จ๐ญ
Ribeye375
2026-09-23 18:29:38
(6 days ago)
HIPS recon-attempt - Block tcp/0:65535
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 16:31:36
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 12:31:33.316731 2026] [security2:error] [pid 29484:tid 29484] [client 34.65.100.190:33410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cacs.me"] [uri "/public/.git/config"] [unique_id "arP-5VRr27101SvLnoBCpgAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 14:29:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 10:29:10.204030 2026] [security2:error] [pid 13623:tid 13623] [client 34.65.100.190:50576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "box903.com"] [uri "/htdocs/.git/config"] [unique_id "arPiNlMueMkd06gynMmbuAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 14:11:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.100.190 (190.100.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 10:11:07.800108 2026] [security2:error] [pid 2662:tid 2662] [client 34.65.100.190:56706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookofraphael.com"] [uri "/public/.git/config"] [unique_id "arPd-6vDpKpfb-BM8DQngQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-23 12:41:52
(1 week ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack