๐ซ๐ท
Tilellit.PRO
2026-07-18 09:36:54
(2 days ago)
WP Armour Plugin detection
Web Spam
Brute-Force
๐ณ๐ฑ
jjnxpct
2026-02-14 04:53:04
(5 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /backend/.env (Rule ID: 930130) - Restricted File Access Attempt [Suspicious: .env found within REQUEST_FILENAME: /backend/.env]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 07:18:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 02:18:11.368118 2026] [security2:error] [pid 2887:tid 2887] [client 65.111.21.79:51003] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kulprid.com"] [uri "/backup/.git/config"] [unique_id "aY7QM5X6nunkJ4ZJgX6UJAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-02-13 05:02:19
(5 months ago)
Try to access /wp/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 04:37:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 23:37:26.584621 2026] [security2:error] [pid 2265254:tid 2265254] [client 65.111.21.79:22999] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kithouse.org"] [uri "/site/.git/config"] [unique_id "aY6qhtwNTHUundpHrmooogAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-13 04:05:08
(5 months ago)
Scanning/Probing (23)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 02:57:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 21:57:11.077167 2026] [security2:error] [pid 11195:tid 11251] [client 65.111.21.79:21127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kettlehill.com"] [uri "/.git/config"] [unique_id "aY6TB-_whjdQa9WHrd1mOwAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 02:21:09
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 21:21:05.892183 2026] [security2:error] [pid 21945:tid 21976] [client 65.111.21.79:33465] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keithfamily.net"] [uri "/admin/.env"] [unique_id "aY6KkRtceAHuS2V-cx0TUgAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-12 19:49:53
(5 months ago)
git/env leak probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:52:33
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:52:25.142894 2026] [security2:error] [pid 16380:tid 16380] [client 65.111.21.79:19945] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gerrytolentino.net"] [uri "/config/.env"] [unique_id "aYqreWZ_GN_9TLFb4Zaj3QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 18:22:25
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 13:22:19.444896 2026] [security2:error] [pid 1870907:tid 1870916] [client 65.111.21.79:31999] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "playgamesplay.com"] [uri "/.git/HEAD"] [unique_id "aXEZW6qmnfg3UAhUl9ejRgAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-20 22:18:53
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 17:18:50.121184 2026] [security2:error] [pid 5067:tid 5067] [client 65.111.21.79:57761] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ssion.com"] [uri "/.env"] [unique_id "aW__Sj4Rbz7eP3UOtgQhtQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-20 22:00:51
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.21.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 17:00:43.389710 2026] [security2:error] [pid 3979:tid 3979] [client 65.111.21.79:21301] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cooper-katz.com"] [uri "/.env"] [unique_id "aW_7C4mSyqX2mO7vpt03DAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2024-11-25 10:33:37
(1 year ago)
Unauthorized VPN login attempts: 2 attempts were recorded from 65.111.21.79
2024-11-25T10:57:28+01:0 ...
show more
Unauthorized VPN login attempts: 2 attempts were recorded from 65.111.21.79
2024-11-25T10:57:28+01:00 vpn Access-Reject 'amrk00' station: 65.111.21.79 auth-type: PAP realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2024-11-25T10:58:11+01:00 vpn Access-Reject 'ddvorak' station: 65.111.21.79 auth-type: PAP realm: vse.cz nas: <redacted> called: <redacted> => address-pool: pacioli_pool msg: '<redacted>'
show less
Brute-Force
Web App Attack
Anonymous
2024-11-18 18:51:49
(1 year ago)
Automatic report - Vulnerability scan
/RDWeb/Pages/en-US/login.aspx
Web App Attack