๐ฎ๐น
CoreTech srl
2026-09-02 11:13:58
(1 hour ago)
cloudlinux2 fail2ban: 2026-09-02 13:09:18,089 fail2ban.filter [1472]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-02 13:09:18,089 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 136.144.42.191 - 2026-09-02 13:09:17cloudlinux2 fail2ban: 2026-09-02 13:10:20,869 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 34.81.126.135 - 2026-09-02 13:10:20cloudlinux2 fail2ban: 2026-09-02 13:10:27,288 fail2ban.actions [1472]: NOTICE [plesk-modsecurity] Unban 49.42.14.97cloudlinux2 fail2ban: 2026-09-02 13:10:33,197 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 49.156.110.239 - 2026-09-02 13:10:32cloudlinux2 fail2ban: 2026-09-02 13:10:43,179 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 49.156.110.239 - 2026-09-02 13:10:43cloudlinux2 fail2ban: 2026-09-02 13:10:43,324 fail2ban.filter [1472]: INFO [recidive] Found 49.156.110.239 - 2026-09-02 13:10:43cloudlinux2 fail2ban: 2026-09-02 13:10:43,318 fail2ban.actions [1472]: NOTICE [plesk-modsecurity] Ban 49.156.110.239cloudlinux2 fail2ban: 2026-09-02 13:11:15,985 fai
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 10:53:18
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 06:53:15.062522 2026] [security2:error] [pid 3226825:tid 3227008] [client 34.81.126.135:22934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ecothermtech.com"] [uri "/.git/config"] [unique_id "apgAG-s1UIk8zkouoRXI2wAAAQE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 09:29:31
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 05:29:26.070844 2026] [security2:error] [pid 27735:tid 27735] [client 34.81.126.135:28990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "godplusus.com"] [uri "/.git/config"] [unique_id "apfsdiYXI3M4VnitHFRWMAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 08:57:50
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:57:43.928761 2026] [security2:error] [pid 28672:tid 28672] [client 34.81.126.135:53376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karyaenigma.com"] [uri "/.git/config"] [unique_id "apflB8mJhUydenSA70yXNAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:38:04
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:37:58.586416 2026] [security2:error] [pid 19779:tid 19779] [client 34.81.126.135:48728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vgalleria.com"] [uri "/.git/config"] [unique_id "apfSVrT3x4q6mDWAndVwzwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 21:30:16
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:30:09.703539 2026] [security2:error] [pid 6635:tid 6635] [client 34.81.126.135:25344] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stoneageartifacts.com"] [uri "/.git/config"] [unique_id "apdD4TcVYeR_m33Q4a74zAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 16:18:27
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 12:18:21.146992 2026] [security2:error] [pid 27081:tid 27108] [client 34.81.126.135:19274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "missmadlove.com"] [uri "/.git/config"] [unique_id "apb6zdhXESsNEkeLDZQl9wAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 08:37:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 04:37:17.570780 2026] [security2:error] [pid 18407:tid 18407] [client 34.81.126.135:42212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "louisianamasons.com"] [uri "/.git/config"] [unique_id "apaOvad1lzb_bR0UfR5c2wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-01 06:08:20
(1 day ago)
csagent: score 20.0: secrets grab x2; 2 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:42:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:42:04.000306 2026] [security2:error] [pid 8473:tid 8473] [client 34.81.126.135:21970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "duhcathlon.com"] [uri "/.git/config"] [unique_id "apZlq8flsJO6mjuZEJrVAwAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 03:54:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:54:26.301129 2026] [security2:error] [pid 20989:tid 20989] [client 34.81.126.135:1060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bostonmarathonstories.com"] [uri "/.git/config"] [unique_id "apZMcrmQTfJ0K9yYBbR7jAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 14:27:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 10:27:48.653253 2026] [security2:error] [pid 24971:tid 25075] [client 34.81.126.135:26236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "omniuscorp.com"] [uri "/.git/config"] [unique_id "apWPZFDy9F4RPkMlr6gtYAAAARg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 13:33:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 09:32:57.895286 2026] [security2:error] [pid 27981:tid 27981] [client 34.81.126.135:32560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naturalacu.com"] [uri "/.git/config"] [unique_id "apWCicyWjbarcIzUmMm44AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 12:51:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:51:45.992306 2026] [security2:error] [pid 14007:tid 14007] [client 34.81.126.135:28934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "warshaw1.com"] [uri "/.git/config"] [unique_id "apV44QyN3k71VvC-Mpq8TwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:29:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.126.135 (135.126.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:29:34.562441 2026] [security2:error] [pid 26327:tid 26327] [client 34.81.126.135:59854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "texasbordertours.com"] [uri "/.git/config"] [unique_id "apVXjtP-SN4OYxw1YoQiRwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack