๐บ๐ธ
RAP
2026-03-18 06:45:49
(6 months ago)
2026-03-18 06:45:49 UTC Unauthorized activity to TCP port 8080. Web App
Port Scan
Web App Attack
๐บ๐ธ
xmission.com
2026-03-18 06:14:38
(6 months ago)
Blocked by UFW (TCP on 8089)
Source port: 61007
TTL: 237
Packet length: 44
TOS: 0x08
This report (f ...
show more
Blocked by UFW (TCP on 8089)
Source port: 61007
TTL: 237
Packet length: 44
TOS: 0x08
This report (for 138.197.186.180) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ต๐ฑ
sefinek.net
2026-03-18 06:10:32
(6 months ago)
Blocked by UFW on PL02 [8082/tcp] | SPT: 61011 | TTL: 244 | LEN: 44 | TOS: 0x00 โข Reported by: githu ...
show more
Blocked by UFW on PL02 [8082/tcp] | SPT: 61011 | TTL: 244 | LEN: 44 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ธ๐ฌ
celestialcity
2026-03-18 05:38:57
(6 months ago)
Blocked by UFW on celestialcityas [8081/tcp] | SPT: 61013 | TTL: 233 | LEN: 44 | TOS: 0x00 โข Reporte ...
show more
Blocked by UFW on celestialcityas [8081/tcp] | SPT: 61013 | TTL: 233 | LEN: 44 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
mnsf
2026-01-29 00:05:44
(8 months ago)
Too many Status 40X (15)
Scanning/Probing (33)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 08:45:21
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 28 03:45:11.613853 2026] [security2:error] [pid 10163:tid 10163] [client 138.197.186.180:52270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.metuchenmower.com"] [uri "/.git/config"] [unique_id "aXnMl2rtealaGOcZ6MXR7AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 08:13:16
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 28 03:13:08.920933 2026] [security2:error] [pid 27825:tid 27825] [client 138.197.186.180:41988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bright-ideas.jannetta.com"] [uri "/.git/config"] [unique_id "aXnFFBYnNuW4fVzJZzji9wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 06:25:41
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 28 01:25:34.475859 2026] [security2:error] [pid 18194:tid 18194] [client 138.197.186.180:49628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.tellyourstory.com"] [uri "/.git/config"] [unique_id "aXmr3njvgI1QgttxErgIswAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 05:24:01
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 28 00:23:55.681172 2026] [security2:error] [pid 2453137:tid 2453184] [client 138.197.186.180:52772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.lightsondisplay.com"] [uri "/.git/config"] [unique_id "aXmdaxMwyJ7yGHjvy7Nm0AAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 03:54:46
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 27 22:54:41.583121 2026] [security2:error] [pid 13756:tid 13756] [client 138.197.186.180:58594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mariekespresser.com"] [uri "/.git/config"] [unique_id "aXmIgT0vGOkByYMdIPz2kAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 03:34:03
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 27 22:33:56.819481 2026] [security2:error] [pid 23835:tid 23835] [client 138.197.186.180:47420] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jacksonindetail.com"] [uri "/.git/config"] [unique_id "aXmDpLb_5acUyAJr5Q2NKwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 02:52:58
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 27 21:52:52.702098 2026] [security2:error] [pid 15065:tid 15065] [client 138.197.186.180:40760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.aboutagingparents.com"] [uri "/.git/config"] [unique_id "aXl6BLtnBmoxG5RtTa566QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-28 02:20:02
(8 months ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-28 01:27:53
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 138.197.186.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 27 20:27:46.107970 2026] [security2:error] [pid 1471:tid 1471] [client 138.197.186.180:46502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bendergloves.com"] [uri "/.git/config"] [unique_id "aXlmEtAO3RldkXDRbvr1sgAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-28 01:12:09
(8 months ago)
138.197.186.180 - - [28/Jan/2026:02:12:09 +0100] "GET /.git/config HTTP/1.1" 403 4190
...
Web App Attack