๐บ๐ธ
MPL
2026-07-12 21:13:05
(1 week ago)
tcp/1177 (2 or more attempts)
Port Scan
๐บ๐ธ
xmission.com
2026-07-12 21:09:04
(1 week ago)
Blocked by UFW (TCP on 4000)
Source port: 61014
TTL: 241
Packet length: 44
TOS: 0x08
This report (f ...
show more
Blocked by UFW (TCP on 4000)
Source port: 61014
TTL: 241
Packet length: 44
TOS: 0x08
This report (for 157.245.246.50) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ซ๐ท
Duggy_Tuxy๐งฑ
2026-07-12 20:36:28
(1 week ago)
[DS-BLKS-PROD01] Blocked by SysWarden Firewall (Traffic from Malicious Hoster (ASN))
Port Scan
๐ช๐ธ
Gem
2026-04-17 22:11:27
(3 months ago)
Unauthorized web scan.
Web App Attack
๐บ๐ธ
WellSpring
2026-04-10 22:51:06
(3 months ago)
Automated probe detected by Ody Sentinel / WellSpr.ing. Type: git_exposure. Path: /.git/config. Auto ...
show more
Automated probe detected by Ody Sentinel / WellSpr.ing. Type: git_exposure. Path: /.git/config. Auto-blocked after threshold exceeded. Dossier: https://wellspr.ing/dossier/sentinel-157-245-246-50
show less
Web App Attack
๐ช๐ธ
Gem
2026-04-10 22:10:23
(3 months ago)
Unauthorized web scan.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-10 21:20:24
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 17:20:17.070852 2026] [security2:error] [pid 3392434:tid 3392434] [client 157.245.246.50:34188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "peacefulsteps.com"] [uri "/.git/config"] [unique_id "adlpkXmSKpKZ9EDYX0bwVQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-10 21:05:19
(3 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-10 20:19:40
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 16:19:32.442786 2026] [security2:error] [pid 2405724:tid 2405724] [client 157.245.246.50:43550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "math1on1.net"] [uri "/.git/config"] [unique_id "adlbVFyNd4ZB3RePSuzZrAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-10 19:49:47
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 15:49:41.483865 2026] [security2:error] [pid 3297752:tid 3297851] [client 157.245.246.50:45136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "particulierlb.com"] [uri "/.git/config"] [unique_id "adlUVdmnlS5hrDctMlNffgAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-04-10 19:48:26
(3 months ago)
(y3) Failed access -byebye- from 157.245.246.50 (US/United States/-): (CF_ENABLE)
Hacking
๐ฉ๐ช
webko.si
2026-04-10 19:42:12
(3 months ago)
pridenmozic.si: Bruteforce web app access, URI detail: '/.git/config'.
Web App Attack
๐ซ๐ท
ecode hosting
2026-04-10 19:30:03
(3 months ago)
Domain : gnsskirala.com
Rule : config
2026-04-10 19:28:14 10.100.1.20 GET /.git/config - 80 - 157.24 ...
show more
Domain : gnsskirala.com
Rule : config
2026-04-10 19:28:14 10.100.1.20 GET /.git/config - 80 - 157.245.246.50 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 - gnsskirala.com 404 8 0 1374 239 2332 - -
show less
Hacking
SQL Injection
๐ฌ๐ง
pinguin
2026-04-10 19:04:33
(3 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-10 18:49:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.246.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 14:49:37.873729 2026] [security2:error] [pid 2046948:tid 2046948] [client 157.245.246.50:53164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "owlcapone.com"] [uri "/.git/config"] [unique_id "adlGQbOEl--mFq0B__t5SwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack