Anonymous
2026-04-13 20:13:19
(1 month ago)
Forum/form spam
Web Spam
Anonymous
2026-03-25 19:41:57
(2 months ago)
Forum/form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-29 05:33:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:33:14.461464 2025] [security2:error] [pid 20427:tid 20427] [client 65.111.15.95:27135] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "targetbinario.com"] [uri "/.git/HEAD"] [unique_id "aVISmppTwHNq9JG_EMVN0gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:08:04
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:07:57.062592 2025] [security2:error] [pid 7040:tid 7040] [client 65.111.15.95:30833] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deutschpunkt.com"] [uri "/.git/HEAD"] [unique_id "aVIMrdCVnYqz831r5COCqgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-12-24 00:50:08
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
Anonymous
2025-12-09 23:21:11
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
SLSLLC
2025-11-25 08:09:50
(6 months ago)
65.111.15.95 - - [25/Nov/2025:08:09:49 +0000] "GET /.env HTTP/1.1" 301 448 "-" "Mozilla/5.0 (X11; Li ...
show more
65.111.15.95 - - [25/Nov/2025:08:09:49 +0000] "GET /.env HTTP/1.1" 301 448 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 07:37:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:37:19.452031 2025] [security2:error] [pid 2027408:tid 2027416] [client 65.111.15.95:30169] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "financialanalyst.org"] [uri "/.svn/wc.db"] [unique_id "aSVcr30JlhnQTGLFtsgz-AAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:27:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:27:37.690669 2025] [security2:error] [pid 13756:tid 13849] [client 65.111.15.95:49057] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.peapage.com"] [uri "/.git/HEAD"] [unique_id "aSVMWS2vRx1ksuNuFaHSKwAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:18:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:18:45.022227 2025] [security2:error] [pid 18840:tid 18840] [client 65.111.15.95:60591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.stoneybluff.com"] [uri "/.env"] [unique_id "aSUuJXk8lDG8xnjxqP8NvgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:30:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:30:34.309397 2025] [security2:error] [pid 29767:tid 29803] [client 65.111.15.95:18013] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.arrowsinthequiver.com"] [uri "/.svn/wc.db"] [unique_id "aSUi2u2PFPX_dStrHN9c5wAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:28:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.15.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:28:42.683134 2025] [security2:error] [pid 20079:tid 20079] [client 65.111.15.95:52335] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.donalep.com"] [uri "/.env"] [unique_id "aSUGSqlnC1ZjbOk6Lfwl6wAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2025-11-24 23:18:12
(6 months ago)
GET /.aws/credentials HTTP/1.1
Web App Attack
Anonymous
2025-11-18 08:46:42
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.18 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.18 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-14 01:33:03
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack