π©πͺ
FD-IX
2026-09-01 12:32:36
(1 day ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
π©πͺ
Dominik Lysiak
2026-09-01 11:07:42
(1 day ago)
34.77.237.152 - - [01/Sep/2026:13:07:41 +0200] "GET /.git/config HTTP/1.1" 502 323 "-" "Mozilla/5.0 ...
show more
34.77.237.152 - - [01/Sep/2026:13:07:41 +0200] "GET /.git/config HTTP/1.1" 502 323 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [01/Sep/2026:13:07:41 +0200] "GET /.env HTTP/1.1" 502 323 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [01/Sep/2026:13:07:41 +0200] "GET /.git/config HTTP/1.1" 502 323 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
π©πͺ
Petros Stefanakis
2026-09-01 08:39:58
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.77.237.152 (BE/Belgium/152.237.77.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.77.237.152 (BE/Belgium/152.237.77.34.bc.googleusercontent.com)
show less
SQL Injection
π³π±
Savvii
2026-09-01 06:24:57
(1 day ago)
20 attempts against mh-misbehave-ban on crop
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-09-01 04:27:21
(1 day ago)
20 attempts against mh-misbehave-ban on staging
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-09-01 00:15:10
(1 day ago)
20 attempts against mh-misbehave-ban on pea
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-08-31 22:02:09
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-30.
show less
Web App Attack
SSH
Hacking
π«π·
sthoyer.de
2026-08-31 16:51:36
(2 days ago)
34.77.237.152 - - [31/Aug/2026:18:51:34 +0200] "GET /.git/config HTTP/1.1" 302 495 "-" "Mozilla/5.0 ...
show more
34.77.237.152 - - [31/Aug/2026:18:51:34 +0200] "GET /.git/config HTTP/1.1" 302 495 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [31/Aug/2026:18:51:34 +0200] "GET /.env HTTP/1.1" 302 495 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [31/Aug/2026:18:51:34 +0200] "GET /.env.local HTTP/1.1" 302 495 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 10:19:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:19:14.347973 2026] [security2:error] [pid 31518:tid 31518] [client 34.77.237.152:56210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stewhist.org"] [uri "/.git/config"] [unique_id "apVVIi7r7-il3s3_tkRPDAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 09:48:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 05:48:53.175197 2026] [security2:error] [pid 9897:tid 9897] [client 34.77.237.152:56834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stevescottcoaching.com"] [uri "/.git/config"] [unique_id "apVOBcI5gmIBOHrMMdgZzwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Nightreaver
2026-08-31 09:09:56
(2 days ago)
34.77.237.152 - - [31/Aug/2026:11:09:54 0200] "GET /.env.production HTTP/1.1" 404 518 "-" "Mozilla/ ...
show more
34.77.237.152 - - [31/Aug/2026:11:09:54 0200] "GET /.env.production HTTP/1.1" 404 518 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [31/Aug/2026:11:09:54 0200] "GET /.env.staging HTTP/1.1" 404 518 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [31/Aug/2026:11:09:54 0200] "GET /.env.development HTTP/1.1" 404 518 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [31/Aug/2026:11:09:54 0200] "GET /.env.test HTTP/1.1" 404 518 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.237.152 - - [31/Aug/2026:11:09:55 0200] "GET /.env.remote HTTP/1.1" 404 518 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"[...]
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 08:46:49
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:46:43.303984 2026] [security2:error] [pid 14202:tid 14202] [client 34.77.237.152:34142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stevedemers.com"] [uri "/.git/config"] [unique_id "apU_c4UVxSIAqtBZ86b0FwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-08-31 08:21:41
(2 days ago)
Excessive 404/403 errors
Brute-Force
πΊπΈ
TPI-Abuse
2026-08-31 07:40:02
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 03:39:55.141811 2026] [security2:error] [pid 7699:tid 7699] [client 34.77.237.152:59126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sternscape.com"] [uri "/.git/config"] [unique_id "apUvy62Lq6pJ3JBEwK-2WAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 06:15:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.237.152 (152.237.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:15:26.941131 2026] [security2:error] [pid 26751:tid 26751] [client 34.77.237.152:56120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stepiz62.com.appsdips.com"] [uri "/.git/config"] [unique_id "apUb_l6kgOKlMlVlS-mDCQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack