πͺπΈ
librebit
2026-06-24 03:18:50
(6 hours ago)
Brute force
Brute-Force
π±π»
garmtech.com
2026-03-31 12:13:18
(2 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
π«π·
masterguru
2026-03-29 14:28:08
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.11.109 (US/United States/-): 1 in the l ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.11.109 (US/United States/-): 1 in the last 3600 secs (0-197)
show less
Hacking
π±π»
garmtech.com
2026-03-28 10:24:34
(2 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
π¦πΊ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
πΊπΈ
fbarela
2026-01-25 03:00:06
(4 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
π©πͺ
Packets-Decreaser.NET
2025-12-29 14:02:08
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
πΊπΈ
TPI-Abuse
2025-11-26 08:55:48
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:55:45.425757 2025] [security2:error] [pid 21892:tid 21892] [client 65.111.11.109:21127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.flemingtonmartins.com"] [uri "/.git/HEAD"] [unique_id "aSbAkZJEbAJZ1GvpVPojVgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 05:35:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:35:22.520742 2025] [security2:error] [pid 18601:tid 18601] [client 65.111.11.109:41505] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.67ronin.com"] [uri "/.git/HEAD"] [unique_id "aSaRmqtyfU3OpVteuP6ONgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 06:59:14
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:59:05.046412 2025] [security2:error] [pid 7954:tid 7954] [client 65.111.11.109:59201] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.esmital.cl"] [uri "/.env"] [unique_id "aSQCORNkxugAMZ8LmZSdZQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-13 22:35:46
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-12 22:54:14
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.11.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 17:54:09.844215 2025] [security2:error] [pid 28534:tid 28534] [client 65.111.11.109:52159] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.garantaconsulting.com"] [uri "/config.php%7C/.env%7Csettings.py"] [unique_id "aRUQEf15NmT2B3yLdNgEuwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
wil.com
2025-10-29 07:29:18
(7 months ago)
GlobalProtect login attempts with user gchause.
VPN IP
Brute-Force
π©πͺ
ps-center
2025-10-27 07:23:48
(7 months ago)
C1-W: TCP-Scanner. Port: 22
Port Scan
π¨π
backslash
2025-10-18 03:05:13
(8 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot