๐บ๐ธ
drewf.ink
2026-08-30 06:20:32
(4 days ago)
[06:20] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gatew ...
show more
[06:20] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gateway fingerprinting/recon)
show less
Web App Attack
๐ซ๐ท
Sklurk
2026-08-01 00:16:06
(1 month ago)
Web App Attack
Web App Attack
๐บ๐ธ
RLDD
2026-05-07 09:41:34
(3 months ago)
WP probing -nov
Web App Attack
๐บ๐ธ
nowyouknow
2026-05-01 05:48:18
(4 months ago)
(From [email protected] ) Hey there,
Quick noteโฆ
Just put live a completely free giveaway, and I ...
show more
(From [email protected] ) Hey there,
Quick noteโฆ
Just put live a completely free giveaway, and I kept a spot for you.
Claim your entry here before it closes:
https://suniljaindvg.systeme.io/6850adaf
A winner is getting pickedโฆ no reason it isnโt you
If you would rather not receive any further emails from me, please submit the form on my site
show less
Phishing
Web Spam
๐ฉ๐ช
KPS
2026-04-27 15:18:48
(4 months ago)
PortscanM
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-27 14:36:12
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 10:35:58.334397 2026] [security2:error] [pid 18416:tid 18416] [client 65.111.6.38:35161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lazymanvegan.com"] [uri "/.svn/wc.db"] [unique_id "ae90Trr8BlZQpApjWpyn3wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 21:43:08
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 16:43:04.547683 2025] [security2:error] [pid 31374:tid 31374] [client 65.111.6.38:37569] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trailofcrumbs.com"] [uri "/.git/HEAD"] [unique_id "aVBS6NVhh9pjhXolA0LOJgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-12-26 05:55:40
(8 months ago)
Attempted access to sensitive endpoint (/.git/HEAD) detected. Automated scan or unauthorized probing ...
show more
Attempted access to sensitive endpoint (/.git/HEAD) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2025-11-25 23:02:14
(9 months ago)
Auto-ban: >3000 req/min op 2025-11-25
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-25 05:06:09
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:06:00.373045 2025] [security2:error] [pid 834030:tid 834030] [client 65.111.6.38:45909] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.understory.us"] [uri "/.git/HEAD"] [unique_id "aSU5OB9FcFEm3F7EuyOqUAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:01:04
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:00:55.298213 2025] [security2:error] [pid 27356:tid 27356] [client 65.111.6.38:43991] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.natashahenry.co.uk"] [uri "/.git/HEAD"] [unique_id "aSUp95oylRjhI9KsOzhWDgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:18:36
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:18:30.457758 2025] [security2:error] [pid 15664:tid 15664] [client 65.111.6.38:10093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.anbruswebdesign.com"] [uri "/.svn/wc.db"] [unique_id "aSUgBtJblv-KfHMi8nrEcwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2025-11-25 02:10:11
(9 months ago)
IM360 WAF: Hidden file access
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-25 01:55:47
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:55:41.328431 2025] [security2:error] [pid 32444:tid 32444] [client 65.111.6.38:51575] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coyotebytes.net"] [uri "/.svn/wc.db"] [unique_id "aSUMnUjWlub7LI-gp1aNkQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:32:25
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.6.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:32:17.641137 2025] [security2:error] [pid 1647141:tid 1647209] [client 65.111.6.38:34421] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conceptsinammunition.com"] [uri "/.env"] [unique_id "aSUHIdffCdpZ5cNrCNdTTgAAAUQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack