๐ฌ๐ง
sc user
2026-09-02 20:12:35
(8 hours ago)
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad ...
show more
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad bot behaviour. Technical log details and local server identifiers intentionally omitted for privacy.
show less
Bad Web Bot
Web App Attack
Port Scan
๐ฒ๐ฝ
octageeks.com
2026-09-02 04:08:50
(1 day ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-01 21:59:52
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-31.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 11:58:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (15.93.85.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (15.93.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:58:04.257730 2026] [security2:error] [pid 29323:tid 29575] [client 34.85.93.15:41134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thecraftsycat.com"] [uri "/.git/config"] [unique_id "apa9zIL9jUd1Jc6zHxsQNwAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
sc user
2026-09-01 11:38:47
(1 day ago)
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad ...
show more
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad bot behaviour. Technical log details and local server identifiers intentionally omitted for privacy.
show less
Bad Web Bot
Web App Attack
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-01 10:58:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (15.93.85.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (15.93.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:58:39.505782 2026] [security2:error] [pid 22741:tid 22741] [client 34.85.93.15:50904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thecorinthians.info"] [uri "/.git/config"] [unique_id "apav307uHGQhalACToD2SwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-01 10:45:11
(1 day ago)
34.85.93.15 - - [01/Sep/2026:12:45:08 +0200] "GET /.env.bak HTTP/1.1" 303 607 "-" "Mozilla/5.0 (Wind ...
show more
34.85.93.15 - - [01/Sep/2026:12:45:08 +0200] "GET /.env.bak HTTP/1.1" 303 607 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.85.93.15 - - [01/Sep/2026:12:45:09 +0200] "GET /.env.backup HTTP/1.1" 303 613 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.85.93.15 - - [01/Sep/2026:12:45:05 +0200] "GET / HTTP/1.1" 200 5527 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.85.93.15 - - [01/Sep/2026:12:45:05 +0200] "POST / HTTP/1.1" 200 1506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.85.93.15 - - [01/Sep/2026:12:45:06 +0200] "POST / HTTP/1.1" 200 1506 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.85.93.15 - - [01/Sep/2026:12:45:0
show less
Web App Attack
Hacking
๐บ๐ธ
Lee Daniel
2026-09-01 09:41:24
(1 day ago)
34.85.93.15 - - [01/Sep/2026:05:41:23 -0400] "GET /.env HTTP/1.1" 403 6307 "-" "Mozilla/5.0 (X11; Li ...
show more
34.85.93.15 - - [01/Sep/2026:05:41:23 -0400] "GET /.env HTTP/1.1" 403 6307 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 08:08:20
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-01 07:46:38
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฎ๐ช
thecivvie
2026-09-01 07:45:02
(1 day ago)
foomuuri firewall banned tcp/443 56 attempts
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-01 06:39:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (15.93.85.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (15.93.85.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:39:11.183371 2026] [security2:error] [pid 17082:tid 17082] [client 34.85.93.15:33598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thechildrenscharity.net"] [uri "/.git/config"] [unique_id "apZzD36GdXHVIq26KVwlLgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Apache
2026-09-01 05:39:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (JP/Japan/15.93.85.34.bc.googleuser ...
show more
(mod_security) mod_security (id:210492) triggered by 34.85.93.15 (JP/Japan/15.93.85.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Brute-Force
Web App Attack
๐บ๐ธ
antlac1
2026-09-01 04:58:31
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ฆ๐บ
rubixstudios
2026-09-01 04:42:01
(2 days ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack