🇩🇪
NxtGenIT
2026-09-03 15:11:56
(13 hours ago)
CiscoASA Honeypot hit, Payload: "GET /+CSCOE+/logon.html HTTP/1.1" 302 -,
Brute-Force
🇫🇷
Sklurk
2026-08-01 02:04:09
(1 month ago)
Web App Attack
Web App Attack
🇳🇱
homeshowdomain.nl
2026-02-19 22:59:45
(6 months ago)
Auto-ban: >3000 req/min op 2026-02-19
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-02-19 04:24:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 23:24:20.240399 2026] [security2:error] [pid 6239:tid 6239] [client 65.111.10.18:16133] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kln.jp"] [uri "/.env.local"] [unique_id "aZaQdJZ2mLoHytcdTf5crwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-19 03:44:59
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:44:52.009521 2026] [security2:error] [pid 27466:tid 27466] [client 65.111.10.18:58747] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kinaffanchufoods.com"] [uri "/new/.git/config"] [unique_id "aZaHNEuVTyyFEnxRb48bzgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-19 03:04:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:04:28.285527 2026] [security2:error] [pid 13220:tid 13220] [client 65.111.10.18:39789] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kentsavagelaw.com"] [uri "/.env.save"] [unique_id "aZZ9vAlB1AarFONBIHwTqAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-19 01:26:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 20:26:29.021495 2026] [security2:error] [pid 8760:tid 8760] [client 65.111.10.18:9511] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kamrynbever.com"] [uri "/config/.env"] [unique_id "aZZmxVKFio0ozmGR-UjL_wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-18 23:33:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:33:36.577685 2026] [security2:error] [pid 27584:tid 27584] [client 65.111.10.18:45261] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vibratingharvard.com"] [uri "/test/.git/config"] [unique_id "aZZMUH7O_HME__F7DzjaugAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-18 16:52:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 11:52:38.431935 2026] [security2:error] [pid 22697:tid 22697] [client 65.111.10.18:54585] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zackfranz.com"] [uri "/config/.env"] [unique_id "aZXuVuL6Hj1izLXpiJQauQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-18 13:00:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 08:00:09.455174 2026] [security2:error] [pid 3194:tid 3194] [client 65.111.10.18:54895] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wfowisdom.com"] [uri "/new/.git/config"] [unique_id "aZW32dLKsjJ4u91JwE8E3QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-18 12:35:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 07:35:03.586979 2026] [security2:error] [pid 21864:tid 21864] [client 65.111.10.18:63949] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weddinganniversarynapkins.com"] [uri "/admin/.git/config"] [unique_id "aZWx904k6jG_y8nX7Ui5VwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-18 12:03:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 07:03:01.647729 2026] [security2:error] [pid 1191409:tid 1191409] [client 65.111.10.18:10855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "waterarchitecture.com"] [uri "/dev/.git/config"] [unique_id "aZWqdViPK-S2ypMubZhpCAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 04:35:21
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.10.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:35:18.109566 2025] [security2:error] [pid 5727:tid 5727] [client 65.111.10.18:15687] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lusocleaningservice.com"] [uri "/.env"] [unique_id "aVIFBtFsGqFf4tEwUeO2PAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2025-12-23 10:48:30
(8 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
🇦🇺
MAGIC
2025-12-09 00:06:49
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot