๐บ๐ธ
Ben Schoolland
2026-10-03 17:35:36
(2 days ago)
Requested known WordPress backdoor/scanner-only paths. No legitimate use.
Bad Web Bot
Web App Attack
๐บ๐ธ
drewf.ink
2026-09-29 01:45:03
(6 days ago)
[01:45] Attempted HTTPS GlobalProtect login with credentials pbrown:W******1
Web App Attack
๐บ๐ธ
Ben Schoolland
2026-09-17 12:57:16
(2 weeks ago)
Requested known WordPress backdoor/scanner-only paths (config backups, .env, .git/config). No legiti ...
show more
Requested known WordPress backdoor/scanner-only paths (config backups, .env, .git/config). No legitimate use.
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-09-12 14:27:03
(3 weeks ago)
block ruleset 51D5331ECDCF70C2C6410C0D0EEB5F69B17B5F56
Bad Web Bot
๐ฉ๐ช
paissangroup
2026-09-09 14:17:58
(3 weeks ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
Sklurk
2026-04-06 01:04:16
(5 months ago)
Web App Attack
Web App Attack
Anonymous
2026-02-11 09:01:00
(7 months ago)
SMS pumping
DDoS Attack
VPN IP
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:10
(9 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฆ๐บ
MAGIC
2025-12-20 01:03:12
(9 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-09 09:56:28
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 04:56:21.540828 2025] [security2:error] [pid 13790:tid 13790] [client 65.111.20.154:24605] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-registration-france.com"] [uri "/.env"] [unique_id "aTfyRUUy0R7mMEevLIc4xgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-07 22:46:34
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 17:46:27.009301 2025] [security2:error] [pid 10297:tid 10313] [client 65.111.20.154:39973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "east-lease.com"] [uri "/.env"] [unique_id "aTYDwzCoocSuqSYIumTvhQAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-07 17:34:45
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 12:34:39.390561 2025] [security2:error] [pid 27067:tid 27067] [client 65.111.20.154:53209] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arogun.org"] [uri "/.svn/wc.db"] [unique_id "aTW6r2i3deaMAHm-5P9R_QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 13:16:11
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 08:16:07.311353 2025] [security2:error] [pid 9014:tid 9040] [client 65.111.20.154:42285] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ucamp.net"] [uri "/.svn/wc.db"] [unique_id "aTQsl4BP-VD-VHxdf7V1aAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 11:40:52
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 06:40:48.507324 2025] [security2:error] [pid 6525:tid 6525] [client 65.111.20.154:18119] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "charityroast.net"] [uri "/.svn/wc.db"] [unique_id "aTQWQJLs7nf-oz-M85XOxwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-05 16:39:13
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 11:39:09.106211 2025] [security2:error] [pid 9607:tid 9607] [client 65.111.20.154:15509] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dokuzadabirdeniz.com"] [uri "/.git/HEAD"] [unique_id "aTMKrbM6Wze2oLBm6LpuMgAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack