๐บ๐ธ
TPI-Abuse
2026-04-11 23:57:40
(2 months ago)
(mod_security) mod_security (id:217200) triggered by 38.145.218.51 (51.218-145-38.rdns.scalabledns.c ...
show more
(mod_security) mod_security (id:217200) triggered by 38.145.218.51 (51.218-145-38.rdns.scalabledns.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 19:57:36.056794 2026] [security2:error] [pid 972723:tid 972723] [client 38.145.218.51:33396] ModSecurity: Access denied with code 403 (phase 1). Match of "endsWith /wp-cron.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "103"] [id "217200"] [rev "2"] [msg "COMODO WAF: HTTP/1.1 POST request missing Content-Length Header||www.lodge84.org|F|2"] [data "/contact%20us/files/mailer.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "www.lodge84.org"] [uri "/Contact%20Us/files/mailer.php"] [unique_id "adrf8PqvALDP6k13jdDeVAAAAAk"], referer: https://www.lodge84.org/Contact%20Us/contact%20us.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BestFans.com
2026-04-09 13:46:47
(2 months ago)
Credential brute-force attacks on webpage logins
Brute-Force
๐ฉ๐ช
NoaQT
2026-04-05 17:03:05
(2 months ago)
38.145.218.51 - - [05/Apr/2026:19:02:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinteres ...
show more
38.145.218.51 - - [05/Apr/2026:19:02:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.pinterest.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:19:02:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.wikipedia.org/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:19:02:47 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.wikipedia.org/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:19:02:58 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.linkedin.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:19:02:58 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.linkedin.com/" "Mozilla/5.0 (X11; Linux x86_64) App
...
show less
DDoS Attack
๐ฉ๐ช
NoaQT
2026-04-05 14:46:57
(2 months ago)
38.145.218.51 - - [05/Apr/2026:16:46:15 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.shop-eli ...
show more
38.145.218.51 - - [05/Apr/2026:16:46:15 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.shop-elite.io/blog" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:16:46:27 +0200] "GET /web/login HTTP/1.1" 499 0 "https://blog.tech-pro.org/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:16:46:31 +0200] "GET /web/login HTTP/1.1" 499 0 "https://app.next.biz/news" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:16:46:31 +0200] "GET /web/login HTTP/1.1" 499 0 "https://www.youtube.com/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36"
38.145.218.51 - - [05/Apr/2026:16:46:39 +0200] "GET /web/login HTTP/1.1" 499 0 "https://shop.pro31.uk/product
...
show less
DDoS Attack
๐บ๐ธ
xmission.com
2026-04-04 19:24:59
(2 months ago)
Blocked by UFW (TCP on 49616)
Source port: 8444
TTL: 60
Packet length: 52
TOS: 0x00
This report (fo ...
show more
Blocked by UFW (TCP on 49616)
Source port: 8444
TTL: 60
Packet length: 52
TOS: 0x00
This report (for 38.145.218.51) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
windowsforum
2026-04-02 18:44:22
(2 months ago)
Spam bot registration: triggers=js_challenge, inv_honeypot, pow_fail, username=AlvaroLegg
Web Spam
Bad Web Bot
Anonymous
2026-04-01 04:30:36
(2 months ago)
Failed login attempt detected by Fail2Ban in plesk-postfix jail
Brute-Force
Anonymous
2026-03-31 20:15:38
(2 months ago)
Unauthorized login attempts via SMTP.
Brute-Force
Email Spam
๐ท๐ด
gtheo99
2026-03-31 18:56:14
(2 months ago)
38.145.218.51 (US/United States/51.218-145-38.rdns.scalabledns.com), 3 distributed smtpauth attacks ...
show more
38.145.218.51 (US/United States/51.218-145-38.rdns.scalabledns.com), 3 distributed smtpauth attacks on account [[email protected] ] in the last 900 secs
show less
SSH
Brute-Force
Hacking
Anonymous
2026-03-28 23:48:33
(2 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐บ๐ธ
interbiznw.com
2026-03-19 01:43:13
(3 months ago)
wordpress-fuzzing
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฎ๐น
VHosting
2026-03-16 11:27:32
(3 months ago)
Detected mail brute force attack from 4 different servers
Brute-Force
๐ฎ๐ณ
liveaspankaj
2026-02-14 10:29:04
(4 months ago)
DDoS attack: 300 requests in 5m (GET / or repair.php).
DDoS Attack
๐จ๐ณ
ThreatBook.io
2025-07-05 03:04:36
(11 months ago)
ThreatBook Intelligence: Zombie more details on http://threatbook.io/ip/38.145.218.51
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-07-04 00:19:54
(11 months ago)
ThreatBook Intelligence: Zombie more details on http://threatbook.io/ip/38.145.218.51
Web App Attack