Anonymous
2026-06-13 10:21:41
(16 hours ago)
45.130.202.40 - - [13/Jun/2026:18:21:40 +0800] "GET /.git/HEAD HTTP/1.1" 404 237544 "-" "Python-urll ...
show more
45.130.202.40 - - [13/Jun/2026:18:21:40 +0800] "GET /.git/HEAD HTTP/1.1" 404 237544 "-" "Python-urllib/3.10"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 07:55:55
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 03:55:46.177771 2026] [security2:error] [pid 432:tid 432] [client 45.130.202.40:35883] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.heidiurbanski.buffaloweddingdeejay.com"] [uri "/.git/HEAD"] [unique_id "ai0NAgZTsoW3x0Loh5oYIgAAAGg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 06:53:02
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:52:55.870345 2026] [security2:error] [pid 4222:tid 4222] [client 45.130.202.40:60315] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.geointermodal.nodepot.com"] [uri "/.git/HEAD"] [unique_id "aiz-RyGowDL2i0KagfuBLQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 06:02:00
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 02:01:54.507070 2026] [security2:error] [pid 23331:tid 23331] [client 45.130.202.40:28193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "civilwarzone.andrewrmarshall.com"] [uri "/.git/HEAD"] [unique_id "aizyUnaYXPFYJi6XEZ3IQgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-06-13 00:28:12
(1 day ago)
Domain : geneticsound.co.uk
Rule : config
2026-06-13 00:27:19 ***hidden-privacy*** GET /.git/HEAD - ...
show more
Domain : geneticsound.co.uk
Rule : config
2026-06-13 00:27:19 ***hidden-privacy*** GET /.git/HEAD - 80 - 45.130.202.40 HTTP/1.1 Python-urllib/3.10 - geneticsound.co.uk 404 8 0 1308 131 710 - -
show less
Hacking
SQL Injection
๐ง๐ฌ
pa4080
2026-06-12 21:57:42
(1 day ago)
Detected by ModSecurity. Request URI: /.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 18:48:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 14:48:35.598928 2026] [security2:error] [pid 1057:tid 1057] [client 45.130.202.40:27669] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kh6jim.com"] [uri "/.env"] [unique_id "aixUgwaOFikyTOvmE-bAugAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-06-12 14:30:12
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
YF
2026-06-12 05:00:24
(1 day ago)
Git HEAD exposure probe
Web App Attack
Anonymous
2026-06-11 14:20:18
(2 days ago)
2026/06/11 14:19:09 [error] 4415#4415: *76001 [client 45.130.202.40] ModSecurity: Access denied with ...
show more
2026/06/11 14:19:09 [error] 4415#4415: *76001 [client 45.130.202.40] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/usr/local/owasp-modsecurity-crs-4.11.0/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "222"] [id "949110"] [rev ""] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [data ""] [severity "0"] [ver "OWASP_CRS/4.27.0"] [maturity "0"] [accuracy "0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "abii.ingeltechgh.com"] [uri "/.env"] [unique_id "178118754926.562820"] [ref ""], client: 45.130.202.40, server: srv.ingeltechgh.com, request: "GET /.env HTTP/1.1", host: "abii.ingeltechgh.com"
2026/06/11 14:19:12 [error] 4432#4432: *76028 [client 45.130.202.40] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/usr/local/owasp-modsecuri
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-11 08:50:16
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 04:50:12.797364 2026] [security2:error] [pid 2421:tid 2421] [client 45.130.202.40:58805] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clip24.net.sislau.net"] [uri "/.git/HEAD"] [unique_id "aip2xKWh-hCAcKi9vyPw1AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Progetto1
2026-06-11 04:23:01
(2 days ago)
Detected via HAProxyScanner at 2026-06-11 04:23:01 UTC on destination port WEB (80/443). Repeated sc ...
show more
Detected via HAProxyScanner at 2026-06-11 04:23:01 UTC on destination port WEB (80/443). Repeated scan / connection.
show less
Port Scan
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-11 03:53:16
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 23:53:08.976137 2026] [security2:error] [pid 26656:tid 26668] [client 45.130.202.40:43247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.j-and-t.jd-web-designs.com"] [uri "/.git/HEAD"] [unique_id "aioxJLY3kVax6EPVGc66XwAAAUo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 03:24:27
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.202.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 23:24:23.486996 2026] [security2:error] [pid 550:tid 550] [client 45.130.202.40:58195] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.acmax.com"] [uri "/.git/HEAD"] [unique_id "aioqZ7UWb3RjGdv6h1GH9gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Octopuce
2026-06-10 14:32:44
(3 days ago)
Aggressive web search of vulnerable pages: /wp-login.php /wp-includes/fonts/ /autoload_classmap/ /wp ...
show more
Aggressive web search of vulnerable pages: /wp-login.php /wp-includes/fonts/ /autoload_classmap/ /wp-content/themes/tflow/ /templates/beez3/ /w ...
show less
Web App Attack