🇬🇧
openstrike.co.uk
2026-09-05 05:14:15
(6 hours ago)
12 attacks on VC URLs:
GET /var/www/.git/config HTTP/1.1
Hacking
Anonymous
2026-09-05 01:50:02
(9 hours ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-04 21:30:19
(13 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇦
URAN Publishing Service
2026-09-04 19:58:31
(15 hours ago)
[04/Sep/2026:22:58:31 +0300] -- 35.196.40.140 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[04/Sep/2026:22:58:31 +0300] -- 35.196.40.140 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:19:49
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:19:45.414454 2026] [security2:error] [pid 6326:tid 6326] [client 35.196.40.140:35190] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tekrav.com"] [uri "/app/.git/config"] [unique_id "apsZ0XVVamjHEPXbMaszFAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 18:56:47
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:56:41.623317 2026] [security2:error] [pid 7411:tid 7411] [client 35.196.40.140:49040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.abq4you.com"] [uri "/wordpress/.git/config"] [unique_id "apsUaXuYSqF1a09DPntc3AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 16:11:34
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 12:11:30.956460 2026] [security2:error] [pid 12053:tid 12053] [client 35.196.40.140:42760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "namisushionline.com"] [uri "/wordpress/.git/config"] [unique_id "aprtspvpStV66HSrMjCLNQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 15:45:23
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:45:14.910664 2026] [security2:error] [pid 17384:tid 17384] [client 35.196.40.140:34252] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.megaandina.com"] [uri "/api/.git/config"] [unique_id "aprnihS8r4vAq1_L7X2ydgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 14:31:47
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:31:43.720448 2026] [security2:error] [pid 4823:tid 4823] [client 35.196.40.140:47274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "truecontrarian.com"] [uri "/app/.git/config"] [unique_id "aprWTwy9u7b0dVVNq6We6QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-04 09:05:22
(1 day ago)
Too many Status 40X (12)
Scanning/Probing (24)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 06:11:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:11:00.964988 2026] [security2:error] [pid 27598:tid 27598] [client 35.196.40.140:37672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "architx.com"] [uri "/htdocs/.git/config"] [unique_id "appg9BOg3lL6fIzMUigx6gAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
raph
2026-09-04 03:34:02
(1 day ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇧🇷
borbolla
2026-09-04 02:05:17
(1 day ago)
Automated web credential/secret scanner blocked by Fail2Ban. Probed: "GET /.git/config HTTP/1.1" "GE ...
show more
Automated web credential/secret scanner blocked by Fail2Ban. Probed: "GET /.git/config HTTP/1.1" "GET /api/.git/config HTTP/1.1" "GET /app/.git/config HTTP/1.1"
show less
Web App Attack
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-04 01:54:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.140 (140.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:54:36.097718 2026] [security2:error] [pid 660:tid 660] [client 35.196.40.140:37426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alanbeckwith.mainescentsecrets.com"] [uri "/backend/.git/config"] [unique_id "apok3NA2w0OaORG-ikQJiwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇿
Antinson
2026-09-04 00:11:09
(1 day ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot