๐ณ๐ฑ
Alt255
2026-09-19 12:26:08
(10 hours ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.86.37.33 - - \[19/Sep/2026:14:25:55 +0200\] "GET /.git/config HTTP/1.1" 404 2156 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-19 12:25:15
(10 hours ago)
Scenarios: http-sensitive-files
Total requests: 33
Web App Attack
๐ซ๐ท
dynamix
2026-09-19 12:10:50
(10 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-19 08:30:02
(14 hours ago)
suspicious request in access.log
Web App Attack
๐จ๐ญ
4server
2026-09-19 07:02:59
(15 hours ago)
[SatSep1909:02:52.9460152026][security2:error][pid2872571:tid2873218][client34.86.37.33:0]ModSecurit ...
show more
[SatSep1909:02:52.9460152026][security2:error][pid2872571:tid2873218][client34.86.37.33:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"teatrotangram.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"aq4znFrx8y08qLkow24LqQAAAMM\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 04:52:12
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.86.37.33 (33.37.86.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.86.37.33 (33.37.86.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 00:52:05.793403 2026] [security2:error] [pid 3843:tid 3874] [client 34.86.37.33:49118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teanaunz.com"] [uri "/.git/config"] [unique_id "aq4U9eoKMzp5YcBdMPNRbgAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Philister11
2026-09-19 00:41:48
(22 hours ago)
CrowdSec: crowdsecurity/http-probing (US/AS396982)
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-19 00:01:59
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.86.37.33 (33.37.86.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.86.37.33 (33.37.86.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 20:01:52.465778 2026] [security2:error] [pid 3579:tid 3579] [client 34.86.37.33:49226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teamsterslmcc.com"] [uri "/.git/config"] [unique_id "aq3Q8LIS7EuWwwoxpPo4pQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-18 23:18:56
(23 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+8 more) | 2026-09-18 23:18 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
deskpass.com
2026-09-18 21:42:17
(1 day ago)
GET /core/phpinfo.php
Web App Attack
๐ฌ๐ง
consul.to
2026-09-18 19:08:24
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
masterguru
2026-09-18 18:21:46
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ฆ๐บ
neilwal
2026-09-18 17:57:46
(1 day ago)
Web Probe (443): teamhummingbird.neilwallace.au:443 34.86.37.33 - - [19/Sep/2026:03:57:44 +1000] "GE ...
show more
Web Probe (443): teamhummingbird.neilwallace.au:443 34.86.37.33 - - [19/Sep/2026:03:57:44 +1000] "GET /.git/config HTTP/1.1" 401 809 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
teamhummingbird.neilwallace.au:443 34.86.37.33 - - [19/Sep/2026:03:57:45 +1000] "GET /.env HTTP/1.1" 401 809 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
teamhummingbird.neilwallace.au:443 34.86.37.33 - - [19/Sep/2026:03:57:45 +1000] "GET /.env.local HTTP/1.1" 401 809 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 17:30:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.86.37.33 (33.37.86.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.86.37.33 (33.37.86.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 13:29:54.078664 2026] [security2:error] [pid 5576:tid 5576] [client 34.86.37.33:57358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teamgravity.ca.kanata.ws"] [uri "/.git/config"] [unique_id "aq11Ev2mwUiej0G84XvY-AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-18 17:24:21
(1 day ago)
Excessive multi-domain requests
Brute-Force