๐ซ๐ท
Sklurk
2026-08-17 02:14:57
(6 days ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-08-16 01:11:58
(1 week ago)
Web App Attack
Web App Attack
๐ฉ๐ช
LRob
2026-06-22 19:17:33
(2 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
Anonymous
2026-04-18 22:11:05
(4 months ago)
Forum/form spam
Web Spam
Anonymous
2026-03-08 20:56:20
(5 months ago)
Forum/form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-02-13 08:55:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 03:55:26.384955 2026] [security2:error] [pid 9152:tid 9152] [client 65.111.2.185:27943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lamanchaorchards.com"] [uri "/backend/.env"] [unique_id "aY7m_iRIQukLSJPH_xCNKQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-13 06:05:32
(6 months ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 05:16:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 00:16:21.739932 2026] [security2:error] [pid 2351342:tid 2351342] [client 65.111.2.185:44281] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kneupper.com"] [uri "/backend/.env"] [unique_id "aY6zpdXqAYNDkETOoj6g8AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-02-13 04:48:40
(6 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.git/config (Rule ID: 930130) - Restricted File Access Attempt [Suspicious: .git/ found within REQUEST_FILENAME: /.git/config]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 04:08:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 23:08:49.385412 2026] [security2:error] [pid 23707:tid 23707] [client 65.111.2.185:10605] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingmanrents.com"] [uri "/app/.env"] [unique_id "aY6j0YTtQLlJGbhaxEdlxgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 03:46:48
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 22:46:41.060658 2026] [security2:error] [pid 26295:tid 26295] [client 65.111.2.185:64179] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "killeramps.com"] [uri "/dev/.git/config"] [unique_id "aY6eoadvKKJtfy3j09jBvgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 01:58:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 20:58:12.756795 2026] [security2:error] [pid 29266:tid 29266] [client 65.111.2.185:28771] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kbalan.com"] [uri "/test/.git/config"] [unique_id "aY6FNP-LGZw-3LZmxkbnPgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 01:16:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 20:16:05.255906 2026] [security2:error] [pid 30846:tid 30846] [client 65.111.2.185:43503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "karieva.com"] [uri "/test/.git/config"] [unique_id "aY57Vdv19kbTK8GJPLSWngAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 23:16:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.185 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 18:16:16.577778 2026] [security2:error] [pid 10620:tid 10647] [client 65.111.2.185:11831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adventuresdotcom.com"] [uri "/.git/config"] [unique_id "aY5fQA5L8XVhr8ldDXmiXwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-12 23:01:21
(6 months ago)
Auto-ban: >3000 req/min op 2026-02-12
Hacking
Web App Attack
SSH