๐ฌ๐ง
consul.to
2026-09-02 07:10:27
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
4server
2026-09-02 05:50:39
(7 hours ago)
[WedSep0207:50:35.8626822026][security2:error][pid1025428:tid1025487][client34.97.45.62:0]ModSecurit ...
show more
[WedSep0207:50:35.8626822026][security2:error][pid1025428:tid1025487][client34.97.45.62:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.monteco-suisse.ch\"][uri\"/api/.git/config\"][unique_id\"ape5K2V1ZsMOjgtVmIrhDAAAAFc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-09-02 05:40:36
(7 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-02 05:26:43
(8 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-02 05:23:39
(8 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:45:06
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:45:00.763996 2026] [security2:error] [pid 13138:tid 13138] [client 34.97.45.62:43156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.canarysuites.com"] [uri "/site/.git/config"] [unique_id "apepzAB76McHamSUZ5TH4wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 04:32:34
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 03:21:25
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 23:21:19.030280 2026] [security2:error] [pid 5103:tid 5103] [client 34.97.45.62:36408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dildog.com"] [uri "/src/.git/config"] [unique_id "apeWL98U3tY_dz8AEFy1swAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 00:36:04
(12 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.97.45.62 (JP/Japan/62.45.97.34.bc. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.97.45.62 (JP/Japan/62.45.97.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 00:22:40
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:22:32.911570 2026] [security2:error] [pid 15355:tid 15355] [client 34.97.45.62:43778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.mindchill.net"] [uri "/htdocs/.git/config"] [unique_id "apdsSMmtc2C8EpBq98724gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 00:01:37
(13 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.97.45.62 (JP/Japan/62.45.97.34.bc. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.97.45.62 (JP/Japan/62.45.97.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
๐ง๐ฌ
HighWay
2026-09-01 22:17:43
(15 hours ago)
34.97.45.62 - - [01/Sep/2026:22:17:34 +0000] "GET /app/.git/config HTTP/1.1" 403 5579 "-" "crusader- ...
show more
34.97.45.62 - - [01/Sep/2026:22:17:34 +0000] "GET /app/.git/config HTTP/1.1" 403 5579 "-" "crusader-worker/1.0"
34.97.45.62 - - [01/Sep/2026:22:17:34 +0000] "GET /.git/config HTTP/1.1" 403 5579 "-" "crusader-worker/1.0"
34.97.45.62 - - [01/Sep/2026:22:17:34 +0000] "GET /backend/.git/config HTTP/1.1" 403 5579 "-" "crusader-worker/1.0"
...
show less
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 21:43:23
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:43:17.729216 2026] [security2:error] [pid 17295:tid 17295] [client 34.97.45.62:35080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "novavistafoundation.org"] [uri "/.git/config"] [unique_id "apdG9Qd4J3lb-9C-kyNzCwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 19:37:44
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.45.62 (62.45.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:37:35.861459 2026] [security2:error] [pid 31036:tid 31036] [client 34.97.45.62:51146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "customprintedinvitations.com"] [uri "/site/.git/config"] [unique_id "apcpf0BF2wZzH8WFWn6TpQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 18:31:18
(18 hours ago)
PSCSERV WPSCAN 34.97.45.62
Bad Web Bot
Web App Attack