๐ฉ๐ช
conseilgouz
2026-07-24 14:03:38
(1 day ago)
sle-6 : Trying access system files=>/wp-login.php(wp-login.php)
Hacking
๐ฉ๐ช
conseilgouz
2026-07-23 22:01:22
(2 days ago)
mae-6 : Trying access system files=>/wp-login.php(wp-login.php)
Hacking
๐ฑ๐ป
garmtech.com
2026-07-22 05:16:35
(3 days ago)
IM360 WAF: Prohibited WordPress username login/registration
Web App Attack
๐ซ๐ท
ELYAZ
2026-07-22 04:24:09
(4 days ago)
(wordpress) Failed wordpress login from 65.111.20.214 (BR/Brazil/-): (CF_ENABLE)
Brute-Force
๐บ๐ธ
factor1
2026-07-20 23:19:21
(5 days ago)
Fail2ban at saturn Reports Abuse.
Brute-Force
Web App Attack
๐ซ๐ท
pm33
2026-07-20 23:05:50
(5 days ago)
Wordpress login attempts
Brute-Force
๐ซ๐ท
masterguru
2026-04-02 21:07:44
(3 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.20.214 (BR/Brazil/-): 1 in the last 360 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 65.111.20.214 (BR/Brazil/-): 1 in the last 3600 secs (0-193)
show less
Hacking
๐ฑ๐ป
garmtech.com
2026-03-23 09:54:10
(4 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:29
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-11-26 12:07:50
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 07:07:45.019878 2025] [security2:error] [pid 2458:tid 2458] [client 65.111.20.214:16799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.blackstarmgmt.com"] [uri "/.env"] [unique_id "aSbtkbxu1eGrEDvHBVRhtgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:11:37
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:11:30.720791 2025] [security2:error] [pid 30384:tid 30384] [client 65.111.20.214:38179] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.eileensinc.com"] [uri "/.git/HEAD"] [unique_id "aSaaEsSUZzr4RXZM3wvDNAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2025-11-26 02:14:29
(8 months ago)
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: ns2.elhacker.net userAgent: Mozilla/5 ...
show more
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: ns2.elhacker.net userAgent: Mozilla/5.0 (iPhone; CPU iPhone OS 17_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.1 Mobile/15E148 Safari/604.1 Action: block Source: firewallManaged ASN Description: DREI-K-TECH-GMBH Country: CA Method: GET Timestamp: 2025-11-26T02:14:29Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 01:39:12
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:39:05.432998 2025] [security2:error] [pid 32003:tid 32015] [client 65.111.20.214:26641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.progenicyte.net"] [uri "/.git/HEAD"] [unique_id "aSZaOTKMur_mjuXzQQ9U-AAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 01:06:21
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.20.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:06:14.527564 2025] [security2:error] [pid 3569:tid 3569] [client 65.111.20.214:38775] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lyounglaw.com"] [uri "/.svn/wc.db"] [unique_id "aSZShlQzxHRba3HzilUu6gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
loadsoporte
2025-11-25 01:57:19
(8 months ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force