๐ฌ๐ง
oncord
2026-04-24 14:17:17
(1 month ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-03-05 08:17:11
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 03:17:07.590220 2026] [security2:error] [pid 5955:tid 6072] [client 65.111.15.79:46913] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.howardhallis.com"] [uri "/.git/objects/2b/cd957c4e2d0c747a9ffa1335aa782e0fb5387e"] [unique_id "aak8A2jT4P6a9iFdA2bGIgAAAhU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
SSH-Admin
2026-02-07 17:12:28
(4 months ago)
Probing for Exploits
Exploited Host
Web App Attack
๐บ๐ธ
myagent.site
2026-01-15 08:39:45
(4 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-31 00:59:46
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐จ๐ฆ
SSH-Admin
2025-12-27 13:45:08
(5 months ago)
Probing for Exploits
Exploited Host
Web App Attack
๐ซ๐ท
solution.it
2025-12-10 16:57:03
(6 months ago)
[Wed Dec 10 17:57:02.572337 2025] [php7:error] [pid 3172504:tid 3172504] [client 65.111.15.79:55993] ...
show more
[Wed Dec 10 17:57:02.572337 2025] [php7:error] [pid 3172504:tid 3172504] [client 65.111.15.79:55993] script '/var/www/html/blog.solution.it/wp-login.php' not found or unable to stat
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:20:23
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:20:18.563863 2025] [security2:error] [pid 20739:tid 20739] [client 65.111.15.79:14627] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.walterjhoodco.com"] [uri "/.git/HEAD"] [unique_id "aSbicn3Wc-IpjHM8WnpeLQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 10:05:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:05:12.128520 2025] [security2:error] [pid 5367:tid 5367] [client 65.111.15.79:38075] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cnphilos.com"] [uri "/.svn/wc.db"] [unique_id "aSbQ2AwuaERXZF5fGsm_LQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:33:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:33:55.116602 2025] [security2:error] [pid 24017:tid 24017] [client 65.111.15.79:44075] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.webjemm.net"] [uri "/.env"] [unique_id "aSa7c8il4DbLo1Pjkx_OnAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:13:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:13:08.202942 2025] [security2:error] [pid 18020:tid 18020] [client 65.111.15.79:54297] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.naturalacu.com"] [uri "/.git/HEAD"] [unique_id "aSa2lBIzK3JyAFmCDbPltgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 07:12:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 02:12:17.527135 2025] [security2:error] [pid 8292:tid 8292] [client 65.111.15.79:37893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.hisfavorite.net"] [uri "/.svn/wc.db"] [unique_id "aSaoUZ3jO9FfSkAvMHj8kgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:30:42
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:30:37.958471 2025] [security2:error] [pid 28265:tid 28265] [client 65.111.15.79:54183] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jambmaster.com"] [uri "/.env"] [unique_id "aSaQfbyiggAn_C6tX37UigAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 02:51:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 21:51:21.835886 2025] [security2:error] [pid 2276055:tid 2276055] [client 65.111.15.79:11337] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.franchiseconsultants.org"] [uri "/.svn/wc.db"] [unique_id "aSZrKT4GIl6iz17Jbcw8hwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-26 02:22:40
(6 months ago)
Try to connect to Port_Scan_80_stealth
Port Scan