๐ฌ๐ง
Celtic
2026-09-20 20:19:13
(8 hours ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH
๐ฌ๐ง
venus.launch.bz
2026-09-20 18:59:30
(10 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.95.61.66 (CA/Canada/66.61.95.34.bc.g ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.95.61.66 (CA/Canada/66.61.95.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
dbmwebdesign
2026-09-20 17:40:31
(11 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 17:36:39
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.95.61.66 (66.61.95.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.95.61.66 (66.61.95.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 13:36:32.156645 2026] [security2:error] [pid 13867:tid 13867] [client 34.95.61.66:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.wiszen.org"] [uri "/.git/config"] [unique_id "arAZoKew2sO882vjuUXz3AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
Abuse Buster
2026-09-20 17:13:43
(11 hours ago)
34.95.61.66 - - [20/Sep/2026:19:13:40 +0200] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Mac ...
show more
34.95.61.66 - - [20/Sep/2026:19:13:40 +0200] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.95.61.66 - - [20/Sep/2026:19:13:41 +0200] "GET /.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-09-20 17:03:51
(12 hours ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐ฉ๐ช
Hazzard
2026-09-20 16:28:26
(12 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐ฉ๐ช
s@ch@
2026-09-20 15:15:01
(13 hours ago)
Jail: plesk-modsecurity | Web application attack (Plesk ModSecurity)
Web App Attack
๐ฉ๐ช
todix
2026-09-20 14:17:28
(14 hours ago)
Web App Attack Exploid from 34.95.61.66
Web App Attack
๐ฉ๐ช
Hary74656
2026-09-20 13:41:02
(15 hours ago)
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3.
[earlier text truncated]
tched 5 ...
show more
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3.
[earlier text truncated]
tched 5 at TX:blocking_inbound_anomaly_score. [file "/opt/owasp-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 55)"] [ver "OWASP_CRS/4.29.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "webmail.weavernet.at"] [uri "/"] [unique_id "aq_ibQXe9KcLu_fhHRtgaQAAAA8"]
[Sun Sep 20 15:41:01.776197 2026] [vhost schani.hostmi.at] [security2:error] [pid 301866:tid 140484571797184] [client 34.95.61.66:60242] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/opt/owasp-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 30)"] [ver "OWASP_CRS/4.29.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "webmail.weavernet.at"] [uri "/"] [unique_id "aq_ibQXe9KcLu_fhHRtgagAAABA"]
show less
Web App Attack
๐ฉ๐ช
rh24
2026-09-20 13:33:21
(15 hours ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.95.61.66 (CA/Canada/66.61.95.34.bc.goo ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.95.61.66 (CA/Canada/66.61.95.34.bc.googleusercontent.com)
show less
Hacking
Anonymous
2026-09-20 12:13:03
(16 hours ago)
Bot / scanning and/or hacking attempts: POST / HTTP/1.1, GET / HTTP/1.1, GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 11:55:03
(17 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฉ๐ช
itsolon
2026-09-20 10:02:16
(19 hours ago)
[20/Sep/2026:12:02:15 +0200] 178989853521.362087 34.95.61.66 48426 217.154.7.177 443
[20/Sep/2026:12 ...
show more
[20/Sep/2026:12:02:15 +0200] 178989853521.362087 34.95.61.66 48426 217.154.7.177 443
[20/Sep/2026:12:02:15 +0200] 178989853527.838956 34.95.61.66 48426 217.154.7.177 443
[20/Sep/2026:12:02:15 +0200] 178989853593.778373 34.95.61.66 48426 217.154.7.177 443
[20/Sep/2026:12:02:15 +0200] 178989853534.665209 34.95.61.66 48426 217.154.7.177 443
[20/Sep/2026:12:02:15 +0200] 178989853533.326369 34.95.61.66 48426 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-20 09:53:59
(19 hours ago)
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.95.61.66 - - [20/Sep/2026:11:53:52 +0200] "GET /.git/config HTTP/1.1" 301 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack