๐ฌ๐ง
openstrike.co.uk
2026-08-23 05:14:46
(5 hours ago)
6 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ฎ๐น
[email protected]
2026-08-22 22:03:17
(12 hours ago)
137.184.133.213 - - [22/Aug/2026:04:06:33 +0200] "GET /.git/config HTTP/1.1" 404 5471 "-" "Mozilla/5 ...
show more
137.184.133.213 - - [22/Aug/2026:04:06:33 +0200] "GET /.git/config HTTP/1.1" 404 5471 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Web App Attack
Hacking
๐ฉ๐ช
4server
2026-08-22 21:12:41
(13 hours ago)
[SatAug2223:12:38.8684732026][security2:error][pid2960883:tid2960990][client137.184.133.213:0]ModSec ...
show more
[SatAug2223:12:38.8684732026][security2:error][pid2960883:tid2960990][client137.184.133.213:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"distributori-automatici-sigarette-ticino.ch\"][uri\"/.git/config\"][unique_id\"aooQxvuVITX04kyDh7p6NQAAAQY\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
vtchost.com
2026-08-22 20:57:44
(13 hours ago)
vtchost.com:80 137.184.133.213 - - [22/Aug/2026:22:57:43 +0200] "GET /.git/config HTTP/1.1" 418 268 ...
show more
vtchost.com:80 137.184.133.213 - - [22/Aug/2026:22:57:43 +0200] "GET /.git/config HTTP/1.1" 418 268 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Web App Attack
๐ง๐ท
dominioz
2026-08-22 20:32:17
(14 hours ago)
2026-08-22 20:31:17 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+Ap ...
show more
2026-08-22 20:31:17 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 680
2026-08-22 20:31:20 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 781
...
show less
Web App Attack
๐ง๐ท
dominioz
2026-08-22 16:03:16
(18 hours ago)
2026-08-22 16:02:48 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+Ap ...
show more
2026-08-22 16:02:48 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 680
2026-08-22 16:02:50 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 781
2026-08-22 16:02:50 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 781
...
show less
Web App Attack
๐ช๐ธ
tutaim.com
2026-08-22 16:00:08
(18 hours ago)
โ [22/08/26] This IP has been detected performing multiple attacks on websites (6 attempts blocked). ...
show more
โ [22/08/26] This IP has been detected performing multiple attacks on websites (6 attempts blocked). Potential malicious activity.
show less
Brute-Force
SSH
Web App Attack
FTP Brute-Force
๐ฎ๐น
CoreTech srl
2026-08-22 14:38:55
(20 hours ago)
cloudlinux2 fail2ban: 2026-08-22 16:34:47,740 fail2ban.actions [1480]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-22 16:34:47,740 fail2ban.actions [1480]: NOTICE [plesk-modsecurity] Unban 41.222.179.238cloudlinux2 fail2ban: 2026-08-22 16:35:33,559 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 172.71.118.197 - 2026-08-22 16:35:33cloudlinux2 fail2ban: 2026-08-22 16:35:33,547 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 172.71.118.197 - 2026-08-22 16:35:33cloudlinux2 fail2ban: 2026-08-22 16:35:46,532 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 137.184.133.213 - 2026-08-22 16:35:46cloudlinux2 fail2ban: 2026-08-22 16:35:47,410 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 137.184.133.213 - 2026-08-22 16:35:47cloudlinux2 fail2ban: 2026-08-22 16:35:50,124 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 93.71.67.246 - 2026-08-22 16:35:49cloudlinux2 fail2ban: 2026-08-22 16:36:36,834 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 195.178.110.18 - 2026-08-22 16:36:36cloudlinux
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 14:30:18
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.133.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.133.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:30:12.225039 2026] [security2:error] [pid 23271:tid 23271] [client 137.184.133.213:34384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "footshufflerz.com"] [uri "/.git/config"] [unique_id "aomydHmzXprxLlRnwNULbQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
dominioz
2026-08-22 14:12:16
(20 hours ago)
2026-08-22 10:59:22 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+Ap ...
show more
2026-08-22 10:59:22 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 461
2026-08-22 10:59:23 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 558
2026-08-22 14:11:28 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 680
2026-08-22 14:11:31 GET /.git/config - - 137.184.133.213 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/81.0.4044.129+Safari/537.36 - 301 781
...
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-22 13:58:56
(20 hours ago)
cloudlinux2 fail2ban: 2026-08-22 15:54:26,736 fail2ban.filter [1480]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-22 15:54:26,736 fail2ban.filter [1480]: INFO [plesk-wordpress] Found 185.198.240.68 - 2026-08-22 15:54:25cloudlinux2 fail2ban: 2026-08-22 15:55:55,242 fail2ban.filter [1480]: INFO [plesk-wordpress] Found 45.131.193.85 - 2026-08-22 15:55:53cloudlinux2 fail2ban: 2026-08-22 15:56:17,110 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 137.184.133.213 - 2026-08-22 15:56:16cloudlinux2 fail2ban: 2026-08-22 15:56:14,394 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 137.184.133.213 - 2026-08-22 15:56:14cloudlinux2 fail2ban: 2026-08-22 15:56:55,467 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 104.28.198.247 - 2026-08-22 15:56:55cloudlinux2 fail2ban: 2026-08-22 15:57:20,611 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 165.99.41.152 - 2026-08-22 15:57:20cloudlinux2 fail2ban: 2026-08-22 15:57:26,983 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 104.28.198.247 - 2026-08-22
show less
Web App Attack
๐ฉ๐ช
Lino Project
2026-08-22 12:03:32
(22 hours ago)
137.184.133.213 - - [22/Aug/2026:14:03:28 +0200] "GET /.git/config HTTP/1.1" 403 359 "-" "Mozilla/5. ...
show more
137.184.133.213 - - [22/Aug/2026:14:03:28 +0200] "GET /.git/config HTTP/1.1" 403 359 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 11:42:28
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.133.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.133.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:42:25.708595 2026] [security2:error] [pid 23444:tid 23444] [client 137.184.133.213:60394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cyprus-boat-registration.com"] [uri "/.git/config"] [unique_id "aomLIermHTnS1AgK_y27KwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 11:25:54
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.133.213 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.133.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:25:46.539751 2026] [security2:error] [pid 13963:tid 14065] [client 137.184.133.213:54572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "venezuelaguia.com"] [uri "/.git/config"] [unique_id "aomHOvcNtfcNSpDu_dlX6gAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-08-22 08:53:26
(1 day ago)
Multiple WAF Violations
Web App Attack