๐ซ๐ท
Sklurk
2026-08-17 04:52:31
(3 days ago)
Web App Attack
Web App Attack
๐ฉ๐ช
findlab
2026-08-14 23:00:01
(5 days ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-10 20:18:44
(1 week ago)
WordPress probing | req: /wp-login.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/5 ...
show more
WordPress probing | req: /wp-login.php | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
show less
Brute-Force
Web App Attack
๐ซ๐ท
Sklurk
2026-08-10 01:29:22
(1 week ago)
Web App Attack
Web App Attack
๐น๐ท
neron
2026-07-27 18:19:38
(3 weeks ago)
CrowdSec blocked: http:exploit detected via OPNsense firewall
Hacking
Web App Attack
๐บ๐ธ
LotPhantom
2026-04-10 20:25:14
(4 months ago)
2026/04/10 20:25:13 [error] 510848#510848: *5032 connect() failed (111: Connection refused) while co ...
show more
2026/04/10 20:25:13 [error] 510848#510848: *5032 connect() failed (111: Connection refused) while connecting to upstream, client: 65.111.13.31, server: wynnesmiles.com, request: "GET / HTTP/1.1", upstream: "http://127.0.0.1:4001/", host: "wynnesmiles.com"
...
show less
Web App Attack
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(4 months ago)
"DDoS against public endpoint"
DDoS Attack
๐ฌ๐ง
oncord
2026-03-05 14:03:51
(5 months ago)
Form spam
Web Spam
๐ฆ๐บ
oncord
2026-02-15 01:54:05
(6 months ago)
Form spam
Web Spam
๐ณ๐ฑ
homeshowdomain.nl
2026-02-09 22:59:22
(6 months ago)
Auto-ban: >3000 req/min op 2026-02-09
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-09 21:13:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 16:13:17.277653 2026] [security2:error] [pid 803174:tid 803191] [client 65.111.13.31:60329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gaqa.org"] [uri "/new/.git/config"] [unique_id "aYpN7dNUR_HTNHVSYrZuWwAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 18:55:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 13:55:10.152244 2026] [security2:error] [pid 18648:tid 18648] [client 65.111.13.31:47961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fydelity.net"] [uri "/config/.env"] [unique_id "aYotjgBGXrP4rkg-qPE7mAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 12:44:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 07:44:27.655457 2026] [security2:error] [pid 30802:tid 30802] [client 65.111.13.31:59595] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gamerah.net"] [uri "/wp/.git/config"] [unique_id "aYnWq0sHNm3ZBqZexKBhBQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 08:13:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 03:13:51.973405 2026] [security2:error] [pid 13271:tid 13271] [client 65.111.13.31:41825] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fullbladderclub.com"] [uri "/.env.save"] [unique_id "aYmXP-KGt8oR2B6ZXDi99wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 04:40:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 65.111.13.31 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 08 23:39:56.530371 2026] [security2:error] [pid 12864:tid 12864] [client 65.111.13.31:41449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fullyevil.com"] [uri "/new/.git/config"] [unique_id "aYllHFuTGJ8H_odvayDcrgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack