๐ฌ๐ง
openstrike.co.uk
2026-09-02 05:13:57
(16 minutes ago)
12 attacks on VC URLs:
GET /wordpress/.git/config HTTP/1.1
Hacking
๐ฉ๐ช
4server
2026-09-02 04:49:23
(41 minutes ago)
[WedSep0206:49:16.8588532026][security2:error][pid949135:tid949417][client35.222.225.171:0]ModSecuri ...
show more
[WedSep0206:49:16.8588532026][security2:error][pid949135:tid949417][client35.222.225.171:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.gmint.ch\"][uri\"/app/.git/config\"][unique_id\"apeqzCERChzsra8GgCu_RwAAARE\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-09-02 04:47:05
(43 minutes ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 04:34:10
(56 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:34:03.476054 2026] [security2:error] [pid 8060:tid 8060] [client 35.222.225.171:39818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.luckydawgs.com"] [uri "/www/.git/config"] [unique_id "apenO84rlB1RBUYyKp4jxwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 02:19:18
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:19:12.957356 2026] [security2:error] [pid 32394:tid 32394] [client 35.222.225.171:57616] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "virtualfresco.com"] [uri "/www/.git/config"] [unique_id "apeHoLNTWallZPvzdrkaNQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-02 02:14:51
(3 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 00:19:04
(5 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.222.225.171 (US/United States/171. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.222.225.171 (US/United States/171.225.222.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
Petros Stefanakis
2026-09-01 23:57:24
(5 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.222.225.171 (US/United States/171.22 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.222.225.171 (US/United States/171.225.222.35.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-01 23:48:11
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 19:48:06.547315 2026] [security2:error] [pid 28878:tid 28878] [client 35.222.225.171:46994] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3dcounty.com"] [uri "/api/.git/config"] [unique_id "apdkNhm0HKoTbDsh6Ur8UQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 23:18:31
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 19:18:22.933094 2026] [security2:error] [pid 26730:tid 26730] [client 35.222.225.171:33510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tour.enchantmenttours.com"] [uri "/var/www/.git/config"] [unique_id "apddPmpYCSzLQ6WFZYAVPQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-01 21:59:21
(7 hours ago)
Auto-ban: >3000 req/min op 2026-09-01
Web App Attack
SSH
Hacking
๐ฉ๐ช
FD-IX
2026-09-01 18:45:40
(10 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 15:09:01
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 11:08:54.881722 2026] [security2:error] [pid 29818:tid 29818] [client 35.222.225.171:43546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "universitydental.org"] [uri "/.git/config"] [unique_id "apbqhlmWBt7DCtHyCirgDwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-01 13:56:26
(15 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 13:35:50
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.225.171 (171.225.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:35:43.727637 2026] [security2:error] [pid 20488:tid 20488] [client 35.222.225.171:57644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "books2cherish.com"] [uri "/wordpress/.git/config"] [unique_id "apbUrxEa8cuuAvMCHyARNAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack