๐ฌ๐ง
openstrike.co.uk
2026-09-16 05:14:43
(4 hours ago)
3 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
Anonymous
2026-09-16 04:32:00
(4 hours ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฒ๐ฝ
octageeks.com
2026-09-16 04:22:34
(5 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:35:06
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:34:59.638553 2026] [security2:error] [pid 27085:tid 27085] [client 34.169.22.16:46466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrbss.com"] [uri "/.git/config"] [unique_id "aqmr83nFa_hzN1WtlVIdDwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
akac
2026-09-15 20:01:16
(13 hours ago)
Web vulnerability scanning: HTTP/1.1 GET /.git/config
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:39:11
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:39:08.346748 2026] [security2:error] [pid 15279:tid 15279] [client 34.169.22.16:54378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mpaexchangeinc.com"] [uri "/.git/config"] [unique_id "aqme3ADqY0vGSFU41F8C8wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:22:43
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:22:36.012368 2026] [security2:error] [pid 9699:tid 9699] [client 34.169.22.16:50486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "movil.mpservice.com.sv"] [uri "/.git/config"] [unique_id "aqma_B5xwGBAX2sUTZef5gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-09-15 19:19:04
(14 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-15 18:56:41
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:56:34.514215 2026] [security2:error] [pid 24663:tid 24663] [client 34.169.22.16:56836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mountainjaytherapy.com"] [uri "/.git/config"] [unique_id "aqmU4j_V1yq0O3VTbOR1nQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 18:44:47
(14 hours ago)
Web App Attack
๐ฏ๐ต
ki3
2026-09-15 18:37:32
(14 hours ago)
Fail2Ban: Web App Attacks and Forum Spam 34.169.22.16 1789497452.0(JST)
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 18:37:29
(14 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:37:23.264053 2026] [security2:error] [pid 30229:tid 30229] [client 34.169.22.16:58312] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "motonaonaobookings.hamiltonbookings.com"] [uri "/.git/config"] [unique_id "aqmQY46sCfvUJvyoavIfMAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-09-15 18:29:10
(14 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-15 18:08:39
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.22.16 (16.22.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:08:34.329186 2026] [security2:error] [pid 947:tid 947] [client 34.169.22.16:42748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mosheimlib.org"] [uri "/.git/config"] [unique_id "aqmJonqsBNs20Zy1RtR98AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
SkyDancer
2026-09-15 17:49:53
(15 hours ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH