๐ซ๐ท
Sklurk
2026-07-17 07:14:32
(1 month ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-06-23 05:35:02
(2 months ago)
Web App Attack
Web App Attack
๐ณ๐ฑ
oisecnet
2026-02-15 22:00:46
(6 months ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-02-15. 24 requests from this ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-02-15. 24 requests from this IP.
show less
Brute-Force
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-15 12:04:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 07:04:01.474526 2026] [security2:error] [pid 28299:tid 28299] [client 65.111.2.2:64203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pandahh.com"] [uri "/app/.env"] [unique_id "aZG2MYJQuXZpVOhvFpcu4wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 11:28:21
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:28:15.319755 2026] [security2:error] [pid 27911:tid 27911] [client 65.111.2.2:63535] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oxygenfarm.com"] [uri "/.git/config"] [unique_id "aZGtz1usv1sWT8X17v5augAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 10:59:00
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 05:58:56.879461 2026] [security2:error] [pid 23824:tid 23824] [client 65.111.2.2:29667] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "osmansirel.com"] [uri "/backup/.git/config"] [unique_id "aZGm8MGy0N4xxzwS3dL4hgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-15 07:05:38
(6 months ago)
Scanning/Probing (23)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 06:33:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 01:33:01.562229 2026] [security2:error] [pid 13387:tid 13387] [client 65.111.2.2:41901] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scraggw.com"] [uri "/admin/.env"] [unique_id "aZFonUGsUWNjXYfvL8CWtQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-02-15 06:09:41
(6 months ago)
(modsecurity) srv102 ModSecurity 65.111.2.2 (US/United States/-): 5 in the last 3600 secs; Ports: *; ...
show more
(modsecurity) srv102 ModSecurity 65.111.2.2 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 05:21:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 00:21:42.543194 2026] [security2:error] [pid 314087:tid 314097] [client 65.111.2.2:12905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "officialseniorworldgolfranking.com"] [uri "/admin/.git/config"] [unique_id "aZFX5uYxiADdM-D-ZqVlbQAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 05:05:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 00:05:25.992087 2026] [security2:error] [pid 6223:tid 6241] [client 65.111.2.2:18643] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oceanstatecollision.com"] [uri "/v2/.git/config"] [unique_id "aZFUFfZ1Qi5ljpkNddWA3QAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-15 05:04:39
(6 months ago)
Blocking for trying to access an exploit file: /.env.staging
Hacking
๐ซ๐ท
dynamix
2026-02-15 04:34:41
(6 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 03:40:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:40:21.912825 2026] [security2:error] [pid 17672:tid 17672] [client 65.111.2.2:43539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pornstarsdontdance.com"] [uri "/site/.git/config"] [unique_id "aZFAJfPFydEmE0w7aTDLhAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 03:13:52
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.2.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:13:49.627072 2026] [security2:error] [pid 11175:tid 11175] [client 65.111.2.2:24857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sabbathseminars.net"] [uri "/.git/config"] [unique_id "aZE57Ymrrp_HmU0V_kmiggAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack