๐ท๐บ
Deynekin.com
2026-08-13 16:03:14
(2 weeks ago)
This IP address has been identified as part of a botnet infrastructure used by threat actors, indica ...
show more
This IP address has been identified as part of a botnet infrastructure used by threat actors, indicating automated and malicious activity.
show less
Fraud Orders
Web App Attack
SSH
Web Spam
FTP Brute-Force
Phishing
Email Spam
Port Scan
Brute-Force
Exploited Host
Hacking
SQL Injection
๐ช๐ธ
librebit
2026-06-23 06:30:12
(2 months ago)
Brute force
Brute-Force
๐จ๐ณ
ThreatBook.io
2026-05-09 23:09:40
(3 months ago)
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/65.111.1.83
2026-05-09 ...
show more
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/65.111.1.83
2026-05-09 21:06:26 /
2026-05-09 21:10:37 /
show less
Web App Attack
Anonymous
2026-02-22 20:47:06
(6 months ago)
Forum/form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-02-12 02:19:48
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 21:19:42.736267 2026] [security2:error] [pid 28455:tid 28455] [client 65.111.1.83:22727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "1214productions.com"] [uri "/.env.save"] [unique_id "aY04vrEfNG1GOsEsUpPtzwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 06:08:59
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:08:55.962895 2026] [security2:error] [pid 6409:tid 6409] [client 65.111.1.83:20281] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail-rfinder.com"] [uri "/site/.git/config"] [unique_id "aYrLdyEfSnC-yOJQOWnX4gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:14:30
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:14:23.430504 2026] [security2:error] [pid 1163111:tid 1163121] [client 65.111.1.83:30043] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iacsb.com"] [uri "/api/.git/config"] [unique_id "aYqij4IkUjRLVk9bu6EioQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 01:35:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 20:34:56.734221 2026] [security2:error] [pid 1051:tid 1051] [client 65.111.1.83:60759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "khovanov.com"] [uri "/backup/.git/config"] [unique_id "aYqLQJHU4VESBCGg6M9zfgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:03:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:03:05.239613 2026] [security2:error] [pid 31573:tid 31573] [client 65.111.1.83:53557] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "howtosellmorepizza.com"] [uri "/site/.git/config"] [unique_id "aYpnqUuhiq2SnpuS2_FmegAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 22:34:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:34:16.767389 2026] [security2:error] [pid 18322:tid 18322] [client 65.111.1.83:9577] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "macro-astrology.com"] [uri "/config/.env"] [unique_id "aYpg6ALV9UIkC5sFtVfoMgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-01-24 14:55:04
(7 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-30 10:59:50
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 30 05:59:22.863115 2025] [security2:error] [pid 9570:tid 9570] [client 65.111.1.83:23633] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.trafficstopper.com"] [uri "/.env"] [unique_id "aVOwiqjvAaM_ZnoZSqmBDwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 04:01:36
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:01:28.233065 2025] [security2:error] [pid 23798:tid 23798] [client 65.111.1.83:21033] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stefchild.com"] [uri "/.git/HEAD"] [unique_id "aVH9GEmu4I7KGqYoC3GwOAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 03:21:00
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 22:20:53.982697 2025] [security2:error] [pid 12100:tid 12100] [client 65.111.1.83:17151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "daviddobkin.com"] [uri "/.svn/wc.db"] [unique_id "aVHzlaR-5M3WyEm52qFn7gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 02:04:38
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 65.111.1.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 21:04:30.950157 2025] [security2:error] [pid 1182:tid 1182] [client 65.111.1.83:44605] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.gapanda.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.gapanda.com"] [uri "/php-old.ini"] [unique_id "aVHhrqKYH2MAh0n5zEQ9pwAAAAM"], referer: http://www.gapanda.com/
show less
Brute-Force
Bad Web Bot
Web App Attack