๐บ๐ธ
micropedro
2026-06-16 19:30:36
(3 days ago)
3 incidents: malicious activity. First: 2026-06-09 14:30, Last: 2026-06-16 15:30 UTC. Triggers: ufw- ...
show more
3 incidents: malicious activity. First: 2026-06-09 14:30, Last: 2026-06-16 15:30 UTC. Triggers: ufw-repeater.
show less
Port Scan
Anonymous
2026-06-11 07:24:48
(1 week ago)
Aggressive web scan
Web App Attack
๐ฆ๐น
urnilxfgbez
2026-06-02 22:45:00
(2 weeks ago)
Last 24 Hours suspicious: (DPT=445|DPT=3389|DPT=22|DPT=3306|DPT=8080|DPT=23|DPT=5900|DPT=1433)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-02 21:37:10
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 145.132.100.70 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 145.132.100.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 17:37:05.322248 2026] [security2:error] [pid 6655:tid 6789] [client 145.132.100.70:7170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.22"] [uri "/.git/HEAD"] [unique_id "ah9NAa0qbehf3oaqd9HpZQAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-06-02 20:45:02
(2 weeks ago)
tcp port scan (8 or more attempts)
Port Scan
๐ซ๐ท
GEDAL
2026-06-02 19:58:20
(2 weeks ago)
Fail2ban nginx-git @ <hostname> : 145.132.100.70 - - [02/Jun/2026:21:58:18 +0200] "GET /.git/config ...
show more
Fail2ban nginx-git @ <hostname> : 145.132.100.70 - - [02/Jun/2026:21:58:18 +0200] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:125.0) Gecko/20100101 Firefox/125.0"
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-02 18:56:26
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 145.132.100.70 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 145.132.100.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 14:56:19.910978 2026] [security2:error] [pid 7521:tid 7521] [client 145.132.100.70:7220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.157"] [uri "/.git/config"] [unique_id "ah8nU3nXQZxt8kr07vkU_gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
micropedro
2026-06-02 18:03:14
(2 weeks ago)
6 incidents: web scanning/attack, port scanning. Ports: 2082/TCP(1), 2083/TCP(1), 2087/TCP(1), 8080/ ...
show more
6 incidents: web scanning/attack, port scanning. Ports: 2082/TCP(1), 2083/TCP(1), 2087/TCP(1), 8080/TCP(1). First: 2026-06-02 14:03, Last: 2026-06-02 14:03 UTC. Triggers: non-public-port,port-trap,ufw-repeater,recidive,firewall-tcp,firewall-http.
show less
Port Scan
Brute-Force
Web App Attack
๐ฌ๐ง
PeravixGroup
2026-06-02 17:07:26
(2 weeks ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot
Anonymous
2026-06-02 16:51:20
(2 weeks ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐ซ๐ท
dynamix
2026-06-02 16:50:28
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
Rayulcifer
2026-03-31 21:11:53
(2 months ago)
145.132.100.70 - - [31/Mar/2026:16:11:51 -0500] "CONNECT www.betataksi.com:443:443 HTTP/1.1" 400 392 ...
show more
145.132.100.70 - - [31/Mar/2026:16:11:51 -0500] "CONNECT www.betataksi.com:443:443 HTTP/1.1" 400 392 "-" "-"
145.132.100.70 - - [31/Mar/2026:16:11:52 -0500] "CONNECT www.betataksi.com:443:443 HTTP/1.1" 400 392 "-" "-"
...
show less
Open Proxy
Port Scan
Hacking
Web App Attack
SSH
๐จ๐ณ
ThreatBook.io
2025-09-30 23:56:42
(8 months ago)
ThreatBook Intelligence: Spam more details on http://threatbook.io/ip/145.132.100.70
Web App Attack