๐ฆ๐บ
2000cn.com.au
2026-08-22 05:44:31
(22 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฌ๐ง
openstrike.co.uk
2026-08-22 05:15:53
(50 minutes ago)
3 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ช๐ธ
librebit
2026-08-22 05:14:14
(52 minutes ago)
Brute force
Brute-Force
๐จ๐ญ
4server
2026-08-22 05:00:38
(1 hour ago)
[SatAug2207:00:31.8691822026][security2:error][pid979247:tid980279][client142.93.55.142:0]ModSecurit ...
show more
[SatAug2207:00:31.8691822026][security2:error][pid979247:tid980279][client142.93.55.142:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"465\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"lemox.ch\"][uri\"/.git/config\"][unique_id\"aoks75VyvpH0Q3qI-aXzHgAAAIs\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 04:54:22
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 00:54:14.932114 2026] [security2:error] [pid 29817:tid 29817] [client 142.93.55.142:33982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "produktives.com"] [uri "/.git/config"] [unique_id "aokrdgTuN9kHTXTFWhYHxQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 04:35:52
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 00:35:47.268394 2026] [security2:error] [pid 22042:tid 22042] [client 142.93.55.142:44888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hxctechllc.com"] [uri "/.git/config"] [unique_id "aoknI8AV7L2yBWcNh1wHEgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 04:20:11
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 00:20:04.250257 2026] [security2:error] [pid 29820:tid 29820] [client 142.93.55.142:41130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "circlehealthcaregroup.com"] [uri "/.git/config"] [unique_id "aokjdP_X6W4_zwe2cLRnugAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-22 03:42:13
(2 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 03:30:44
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 23:30:38.593165 2026] [security2:error] [pid 23822:tid 23822] [client 142.93.55.142:52176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kinnairdenterprisesllc.com"] [uri "/.git/config"] [unique_id "aokX3k2-reDwi0kmFreTqAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 02:28:37
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 22:28:30.185817 2026] [security2:error] [pid 21551:tid 21551] [client 142.93.55.142:36918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "platformintelligence.com"] [uri "/.git/config"] [unique_id "aokJTs9mSI10s2kKeqe6wwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-08-22 01:12:56
(4 hours ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default:80 142.93.55.142 - - [22/Aug/2026:04:07:4 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default:80 142.93.55.142 - - [22/Aug/2026:04:07:41 +0300] "GET /.git/config HTTP/1.1" 403 400 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 00:49:20
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 20:49:16.127273 2026] [security2:error] [pid 22471:tid 22519] [client 142.93.55.142:41230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martinbenes.com"] [uri "/.git/config"] [unique_id "aojyDO7vg3qvqccGBWRpBAAAARI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 00:25:36
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 20:25:33.080348 2026] [security2:error] [pid 16416:tid 16416] [client 142.93.55.142:44360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pamelalambert.com"] [uri "/.git/config"] [unique_id "aojsfbTm6JpXctOij3q2GwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 00:14:02
(5 hours ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 00:08:35
(5 hours ago)
(mod_security) mod_security (id:949110) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 142.93.55.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 20:08:32.060176 2026] [security2:error] [pid 25037:tid 25037] [client 142.93.55.142:41340] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "likulikubookings.com"] [uri "/.git/config"] [unique_id "aojogPezOWIWbIGJrjIT0AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack