๐ณ๐ฑ
oisecnet
2026-09-20 21:01:45
(37 minutes ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-09-20. 246 requests from this ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-09-20. 246 requests from this IP.
show less
Port Scan
Hacking
Web App Attack
๐ญ๐บ
Adorjan Daczo
2026-09-20 00:20:09
(21 hours ago)
Probe for vulnerabilities. Path attempted: /.git/config
Web App Attack
๐ซ๐ฎ
oh.mg
2026-09-19 23:48:51
(21 hours ago)
[Sun Sep 20 01:48:02.633152 2026] [security2:error] [pid 515946:tid 515966] [client 35.221.24.145:57 ...
show more
[Sun Sep 20 01:48:02.633152 2026] [security2:error] [pid 515946:tid 515966] [client 35.221.24.145:57108] [client 35.221.24.145] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.oh.ke"] [uri "/.git/config"] [unique_id "aq8fMjdjjQ3AxoAVrB21rQAAAFI"]
[Sun Sep 20 01:48:49.968326 2026] [security2:error] [pid 515946:tid 515959] [client 35.221.24.145:49376] [client 35.221.24.145] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "a
...
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-19 23:46:07
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.24.145 (145.24.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.24.145 (145.24.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 19:46:01.371797 2026] [security2:error] [pid 982:tid 982] [client 35.221.24.145:60542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ohiobabe.com"] [uri "/.git/config"] [unique_id "aq8euUSC3eTgX-5Y1AUAMQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
etu brutus
2026-09-19 23:37:46
(22 hours ago)
35.221.24.145 Blocked by [Attack Vector List]
...
Hacking
Brute-Force
Exploited Host
๐ฏ๐ต
ki3
2026-09-19 23:37:08
(22 hours ago)
Fail2Ban: Web App Attacks and Forum Spam 35.221.24.145 1789861027.0(JST)
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 23:10:15
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.24.145 (145.24.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.24.145 (145.24.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 19:10:12.128330 2026] [security2:error] [pid 29424:tid 29424] [client 35.221.24.145:38184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ofertasdetrabajosyempleos.com"] [uri "/.git/config"] [unique_id "aq8WVA7EvQghKUgy1_kWqgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
daveoctober
2026-09-19 22:46:45
(22 hours ago)
October Sentinel: honeypot triggered
Bad Web Bot
Web App Attack
๐บ๐ธ
omc
2026-09-19 22:04:53
(23 hours ago)
AH01630: Client denied by server config.
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-09-19 21:59:09
(23 hours ago)
Auto-ban: >3000 req/min op 2026-09-19
Web App Attack
SSH
Hacking
๐ฉ๐ช
Lino Project
2026-09-19 20:47:39
(1 day ago)
35.221.24.145 - - [19/Sep/2026:22:47:35 +0200] "GET /.git/config HTTP/1.1" 403 5488 "-" "-"
...
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 20:42:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.221.24.145 (145.24.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.24.145 (145.24.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 16:42:02.382840 2026] [security2:error] [pid 11744:tid 11744] [client 35.221.24.145:47326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.primemanagementmn.com"] [uri "/.git/config"] [unique_id "aq7zmubo-e8aq_OoqDhtTAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-19 20:33:01
(1 day ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฉ๐ช
webko.si
2026-09-19 20:31:36
(1 day ago)
pridenmozic.si: Bruteforce web app access, URI detail: '/.git/config'.
Web App Attack
Anonymous
2026-09-19 20:19:21
(1 day ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack