๐ง๐ท
Halux
2026-06-11 16:36:55
(9 hours ago)
45.130.202.23 Probing protected path or service
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 08:50:17
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 04:50:12.853837 2026] [security2:error] [pid 17156:tid 17156] [client 45.130.202.23:39199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.clip24.net.sislau.net"] [uri "/.git/HEAD"] [unique_id "aip2xHxKqCypYBuDSw8oKQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-11 04:22:43
(21 hours ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.130.202.23 (TR/Turkey/-): 1 in the last 360 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.130.202.23 (TR/Turkey/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
mccsoft.io
2026-06-11 03:25:26
(22 hours ago)
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). So ...
show more
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). Source matched a blocked-path security rule (jail nginx-444); server returned HTTP 444 (connection closed without response). TCP three-way handshake completed (full HTTP request received).
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
OceanTreasure
2026-06-10 05:55:43
(1 day ago)
tcp/80; Git HEAD reference exposure attempt: "GET /.git/HEAD" @ 2026-06-10T05:48:02Z [proxy]
Web App Attack
๐บ๐ธ
mnsf
2026-06-10 05:05:15
(1 day ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 00:49:01
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.23 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 20:48:56.245731 2026] [security2:error] [pid 21895:tid 21895] [client 45.130.202.23:35917] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "prsresume.com.jamessummers.org"] [uri "/.git/HEAD"] [unique_id "aii0eFwo9ftZVndA7pkIowAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
aranguren.org
2026-06-03 14:56:02
(1 week ago)
45.130.202.23 - - [04/Jun/2026:00:55:59 +1000] "GET /wp-admin/css/colors/midnight/ HTTP/1.1" 404 990 ...
show more
45.130.202.23 - - [04/Jun/2026:00:55:59 +1000] "GET /wp-admin/css/colors/midnight/ HTTP/1.1" 404 990 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:67.0) Gecko/20100101 Firefox/67.0"
45.130.202.23 - - [04/Jun/2026:00:56:00 +1000] "GET /vendor/phpunit/phpunit/src/Util/PHP/ HTTP/1.1" 404 990 "-" "Mozilla/5.0 (Linux x86_64; rv:79.0) Gecko/20100101 Firefox/79.0"
45.130.202.23 - - [04/Jun/2026:00:56:00 +1000] "GET /wp-includes/style-engine/ HTTP/1.1" 404 990 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:74.0) Gecko/20100101 Firefox/74.0"
45.130.202.23 - - [04/Jun/2026:00:56:01 +1000] "GET /wp-content/plugins/core-plugin/ HTTP/1.1" 404 990 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/83.0.4103.61 Safari/537.36"
45.130.202.23 - - [04/Jun/2026:00:56:01 +1000] "GET /wp-content/plugins/ HTTP/1.1" 404 990 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
45.130.202.23 - -
...
show less
Bad Web Bot
๐ซ๐ท
dynamix
2026-06-03 12:42:42
(1 week ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-06-03 04:53:26
(1 week ago)
WordPress hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐จ๐ญ
backslash
2026-06-02 19:51:00
(1 week ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐จ๐ฆ
KIsmay
2026-05-20 18:10:59
(3 weeks ago)
May 20 14:10:57 www4 WPAudit[30705]: 45.130.202.23 bcadjuster.com "Mozilla/5.0 (Windows NT 10.0; Win ...
show more
May 20 14:10:57 www4 WPAudit[30705]: 45.130.202.23 bcadjuster.com "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/138.0" tony:asd FAIL
May 20 14:10:57 www4 WPAudit[30705]: 45.130.202.23 bcadjuster.com "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.0.0 Safari/537.36" tony:asd123 FAIL
May 20 14:10:57 www4 WPAudit[30705]: 45.130.202.23 bcadjuster.com "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_7_4) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.3 Safari/605.1.15" tony:asdasd FAIL
May 20 14:10:58 www4 WPAudit[30705]: 45.130.202.23 bcadjuster.com "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:136.0) Gecko/20100101 Firefox/138.0" tony:asdasd123 FAIL
May 20 14:10:58 www4 WPAudit[30705]: 45.130.202.23 bcadjuster.com "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36" tony:asdf FAIL
...
show less
Brute-Force
Web App Attack
๐น๐ท
pamircil
2026-05-16 14:00:35
(3 weeks ago)
๐ฏ WinnieThePooh Honeypot : GET request to '/config.production.json' on (http/80)๐
SSH
Brute-Force
Hacking
๐ฌ๐ง
consul.to
2026-05-11 05:43:39
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-05-10 17:20:59
(1 month ago)
45.130.202.23 - - [10/May/2026:19:20:58 +0200] "GET /wp-content/uploads/astra-sites/json/system_core ...
show more
45.130.202.23 - - [10/May/2026:19:20:58 +0200] "GET /wp-content/uploads/astra-sites/json/system_core.php HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
45.130.202.23 - - [10/May/2026:19:20:58 +0200] "GET /wp-content/uploads/cartflows-logs/system_core.php HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
45.130.202.23 - - [10/May/2026:19:20:58 +0200] "GET /wp-content/uploads/edd/system_core.php HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
45.130.202.23 - - [10/May/2026:19:20:58 +0200] "GET /wp-content/uploads/elementor/system_core.php HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
45.130.202.23 - - [10/May/2026:19:20:59 +0200] "GET /wp-content/uploads/simply-static/temp-files/system_core.php HTTP/1.1" 404 124 "-" "Go-http-client/1.1"
...
show less
Brute-Force
Web App Attack