๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
Anonymous
2026-02-09 21:56:18
(3 months ago)
65.111.14.129 - - [09/Feb/2026:21:56:02 +0000] "GET /test/.git/config HTTP/1.1" 302 505 "-" "Mozilla ...
show more
65.111.14.129 - - [09/Feb/2026:21:56:02 +0000] "GET /test/.git/config HTTP/1.1" 302 505 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 18:41:32
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 13:41:23.514684 2026] [security2:error] [pid 2329970:tid 2329970] [client 65.111.14.129:23437] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fvsllc.com"] [uri "/test/.git/config"] [unique_id "aYoqU3KN3lYHQhVeY5F0KAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 17:30:34
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:30:26.253374 2026] [security2:error] [pid 27022:tid 27022] [client 65.111.14.129:32873] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fundaciondamashcc.org.ec"] [uri "/new/.git/config"] [unique_id "aYoZsj3hYiMtNB1aISqnGAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 04:10:52
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 08 23:10:47.133254 2026] [security2:error] [pid 7040:tid 7040] [client 65.111.14.129:17551] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fulcrumusa.com"] [uri "/v2/.git/config"] [unique_id "aYleRzev4wIwLNAKk1KtxgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-12-25 06:20:07
(5 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ณ๐ฑ
i-turnradio.nl
2025-12-25 04:53:15
(5 months ago)
2025-12-25 @ 05:53:15 (CET) ~ Blocked based on risk assessment and prior abuse reports
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2025-12-19 20:50:09
(5 months ago)
(modsecurity) srv103 ModSecurity 65.111.14.129 (US/United States/-): 5 in the last 3600 secs; Ports: ...
show more
(modsecurity) srv103 ModSecurity 65.111.14.129 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
nowyouknow
2025-12-10 16:10:22
(5 months ago)
(From [email protected] ) Trusted seo services to boost up your seo rankings!
BonusBacklinks.com ...
show more
(From [email protected] ) Trusted seo services to boost up your seo rankings!
BonusBacklinks.com - we deliver daily backlinks and drive website traffic to your site EVERY DAY:
+ Take 85% DISCOUNT
+ Strong daily backlinks
+ Organic website visits
+ Price as low as $1
+ Bonus coupon codes
View seo offers - https://tiny.cc/BonusBacklinks-Promo
Or enter directly - https://Bonusbacklinks.com
BonusBacklinks - daily backlinks and website traffic to improve your site every day
show less
Phishing
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-10 14:52:11
(5 months ago)
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized ac ...
show more
"Participant in large-scale DDoS Attack in which data injection was attmpted to gain unauthorized access"
show less
DDoS Attack
SQL Injection
Exploited Host
๐ซ๐ท
mrcrassi
2025-12-06 18:08:56
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST meth ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (POST method)
Endpoint: /wp-login.php
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฉ๐ช
Carsten
2025-12-02 04:18:45
(6 months ago)
GET [wp-login.php]
Port Scan
๐บ๐ธ
TPI-Abuse
2025-11-26 10:54:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:54:04.084610 2025] [security2:error] [pid 11350:tid 11350] [client 65.111.14.129:51127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.fgrotary.org"] [uri "/.git/HEAD"] [unique_id "aSbcTGeOxtcjTfCvmIoUXQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 02:27:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 21:27:49.483835 2025] [security2:error] [pid 22319:tid 22319] [client 65.111.14.129:36729] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.okeetokee.org"] [uri "/.svn/wc.db"] [unique_id "aSZlpSJoEej68VJGQnheIQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:57:02
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.14.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:56:52.266873 2025] [security2:error] [pid 28660:tid 28660] [client 65.111.14.129:19699] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "demodexcure.banis-associates.com"] [uri "/.git/HEAD"] [unique_id "aSVTNDGXF0xJmr4Z1TDjaAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack