π«π·
fineservice
2026-09-25 04:09:12
(2 weeks ago)
PrestaShop Security Module: SQL injection probe detected
Web App Attack
π«π·
IRISIO
2026-09-23 10:25:45
(2 weeks ago)
scans/SQL injection/spam posts : 1 queries
Web App Attack
SQL Injection
π«π·
Sklurk
2026-08-05 00:51:28
(2 months ago)
Web App Attack
Web App Attack
π«π·
Sklurk
2026-06-23 05:42:14
(3 months ago)
Web App Attack
Web App Attack
π©πͺ
LRob
2026-06-17 10:30:07
(3 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
πΊπΈ
myagent.site
2026-03-27 00:03:32
(6 months ago)
Blocking for trying to access an exploit file: /.env.staging
Hacking
πΊπΈ
TPI-Abuse
2026-03-05 08:15:04
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 03:14:54.968810 2026] [security2:error] [pid 5955:tid 6051] [client 65.111.21.162:25603] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.howardhallis.com"] [uri "/.git/objects/cb/a0198ded9f8ba7b6c19d166dca049941d040ec"] [unique_id "aak7fmjT4P6a9iFdA2bFYQAAAgA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
[email protected]
2026-03-04 00:26:55
(7 months ago)
65.111.21.162 - - [04/Mar/2026:00:24:42 +0000] "GET http://pwlink.reunion.lescrous.fr/.env HTTP/1.1" ...
show more
65.111.21.162 - - [04/Mar/2026:00:24:42 +0000] "GET http://pwlink.reunion.lescrous.fr/.env HTTP/1.1" 404 554 "-" "Go-http-client/1.1"
65.111.21.162 - - [04/Mar/2026:00:24:43 +0000] "GET /.git/objects/84/7898cb5f72560d8823308bfeed6c5ff5792d04 HTTP/1.1" 404 332 "http://academy.scotland-excel.org.uk/.git/objects/84/7898cb5f72560d8823308bfeed6c5ff5792d04" "Go-http-client/1.1"
65.111.21.162 - - [04/Mar/2026:00:26:55 +0000] "GET /.git/objects/7b/745dc491230ee359ad442a4c123a224cb9a1d3 HTTP/1.1" 404 332 "http://academy.scotland-excel.org.uk/.git/objects/7b/745dc491230ee359ad442a4c123a224cb9a1d3" "Go-http-client/1.1"
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 06:39:03
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:38:58.158265 2025] [security2:error] [pid 6477:tid 6477] [client 65.111.21.162:44641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.haisten.net"] [uri "/.env"] [unique_id "aSaggsek3qHJ4WRZE60sOwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 05:41:32
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:41:27.575743 2025] [security2:error] [pid 15967:tid 15967] [client 65.111.21.162:52449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.avanyupublishing.com"] [uri "/.env"] [unique_id "aSaTB76iO94gZPT8OOriNwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 02:56:28
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 21:56:25.350834 2025] [security2:error] [pid 797:tid 854] [client 65.111.21.162:38997] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hkpipeline1.xyz"] [uri "/.git/HEAD"] [unique_id "aSZsWbvbTVXiKk5sQ0YTyQAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 00:43:34
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:43:28.969370 2025] [security2:error] [pid 352:tid 352] [client 65.111.21.162:56625] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.stucohen.com"] [uri "/.svn/wc.db"] [unique_id "aSZNMEcFAppndgFBBzxL4QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 07:02:28
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:02:23.449599 2025] [security2:error] [pid 28264:tid 28264] [client 65.111.21.162:23781] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lysedzija.com"] [uri "/.svn/wc.db"] [unique_id "aSVUf3OpFEXRnV2UZr_INQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-23 17:57:45
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 12:57:34.420946 2025] [security2:error] [pid 24738:tid 24738] [client 65.111.21.162:45409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.customteeskilleen.com"] [uri "/.env"] [unique_id "aSNLDj0Sz9H_VxbHHbiAeQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
applemooz
2025-11-01 11:31:03
(11 months ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack