๐บ๐ธ
dtorrer
2026-06-11 22:19:50
(5 hours ago)
Brute-force general attack.
Brute-Force
๐ฆ๐บ
HJ5Ss4Ju
2026-06-10 03:10:49
(2 days ago)
Blocked by Wordfence (SID 6)
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-10 01:34:27
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ช๐ธ
librebit
2026-05-17 06:05:22
(3 weeks ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-01-30 00:33:48
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 29 19:33:43.295526 2026] [security2:error] [pid 3638:tid 3638] [client 65.111.3.127:43249] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||primacomm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "primacomm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aXv8Z-eeyst8Hvy-EPjOrwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-01-27 05:40:51
(4 months ago)
Accessed trap at '/wp-login.php'
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 13:52:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 08:52:48.216084 2025] [security2:error] [pid 1281:tid 1336] [client 65.111.3.127:19025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "utahhoaservices.com"] [uri "/.svn/wc.db"] [unique_id "aS7vMOyOY8tcEaCzgimZKQAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 11:45:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 06:45:31.429669 2025] [security2:error] [pid 20304:tid 20304] [client 65.111.3.127:48009] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alaskadreamspublishing.com"] [uri "/.git/HEAD"] [unique_id "aS7RW0CXWlzgLAYbflQtfwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 08:19:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:19:07.979365 2025] [security2:error] [pid 25951:tid 25951] [client 65.111.3.127:20459] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deutschpunkt.com"] [uri "/.env"] [unique_id "aS6g-wkmC378R05O-01EaAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 06:49:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 01:49:16.830839 2025] [security2:error] [pid 26399:tid 26406] [client 65.111.3.127:30683] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "peapage.com"] [uri "/.env"] [unique_id "aS6L7EhlTJHE6APNwDE3sQAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 06:03:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 01:03:01.535969 2025] [security2:error] [pid 12846:tid 12846] [client 65.111.3.127:37749] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iee-usa.com"] [uri "/.env"] [unique_id "aS6BFb2iwvQsfybvrx7SGAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:42:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:42:02.482349 2025] [security2:error] [pid 41297:tid 41354] [client 65.111.3.127:32067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dukesandgannon.com"] [uri "/.git/HEAD"] [unique_id "aS58Kkmpoi4i_MhE56sWLQAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:15:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:15:07.932103 2025] [security2:error] [pid 5799:tid 5799] [client 65.111.3.127:43777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hudswell.com"] [uri "/.git/HEAD"] [unique_id "aS512_i_-zWW8VAFLcytWwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:13:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:13:48.218660 2025] [security2:error] [pid 23210:tid 23210] [client 65.111.3.127:56027] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sdqdesigns.timelord2067.com"] [uri "/.git/HEAD"] [unique_id "aSaanHEmJmp4QF5fs40R3wAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:41:59
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.3.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:41:55.232490 2025] [security2:error] [pid 23135:tid 23135] [client 65.111.3.127:16207] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.thestrongingroup.com"] [uri "/.git/HEAD"] [unique_id "aSP-M15qIAe8Wnh-CNM6rAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack