Anonymous
2026-06-10 19:56:51
(6 days ago)
45.130.203.149 - - [10/Jun/2026:21:56:37 +0200] "GET /wp-content/plugins/dummyyummy/ HTTP/1.1" 404 4 ...
show more
45.130.203.149 - - [10/Jun/2026:21:56:37 +0200] "GET /wp-content/plugins/dummyyummy/ HTTP/1.1" 404 482 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.125 Safari/537.36"
45.130.203.149 - - [10/Jun/2026:21:56:37 +0200] "GET /wp-includes/pomo/ HTTP/1.1" 404 482 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
45.130.203.149 - - [10/Jun/2026:21:56:37 +0200] "GET /wp-content/themes/twentytwentythree/patterns/ HTTP/1.1" 404 482 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:76.0) Gecko/20100101 Firefox/76.0"
45.130.203.149 - - [10/Jun/2026:21:56:37 +0200] "GET /wp-admin/css/colors/sunrise/ HTTP/1.1" 404 482 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 OPR/70.0.3728.95"
45.130.203.149 - - [10/Jun/2026:21:56:37 +0200] "GET /wp-includes/block-patterns/ HTTP/1.1" 404 482 "-" "Mozilla/5
...
show less
DDoS Attack
๐ท๐บ
sms.ru
2026-06-10 17:55:06
(6 days ago)
/wp-admin/js/
Web App Attack
๐ซ๐ท
Octopuce
2026-06-10 12:29:05
(6 days ago)
Aggressive web search of vulnerable pages: /wp-includes/blocks/code/ /wp-includes/blocks/archives/ / ...
show more
Aggressive web search of vulnerable pages: /wp-includes/blocks/code/ /wp-includes/blocks/archives/ /wp-includes/css/dist/components/ /wp-conten ...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 04:59:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 00:59:35.359240 2026] [security2:error] [pid 14449:tid 14449] [client 45.130.203.149:56259] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail2.shirtzz.com"] [uri "/.git/HEAD"] [unique_id "aiT6txzpJapWD8jy0yZItQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-07 03:05:38
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ซ๐ฎ
6kilowatti
2026-05-23 10:15:02
(3 weeks ago)
45.130.203.149 - - [23/May/2026:10:15:00 +0000] "GET /.git/HEAD HTTP/1.1" 404 150 "-" "Python-urllib ...
show more
45.130.203.149 - - [23/May/2026:10:15:00 +0000] "GET /.git/HEAD HTTP/1.1" 404 150 "-" "Python-urllib/3.10"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-23 04:24:06
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 23 00:24:00.189694 2026] [security2:error] [pid 13964:tid 13964] [client 45.130.203.149:42149] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "matchsticbranding.com"] [uri "/.git/HEAD"] [unique_id "ahEr4BYIWyu6i-mR-ggSAAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lnklnx
2026-05-23 01:19:10
(3 weeks ago)
www.lnklnx.com:443 45.130.203.149 - - [22/May/2026:20:19:07 -0500] "GET /.git/HEAD HTTP/1.1" 403 383 ...
show more
www.lnklnx.com:443 45.130.203.149 - - [22/May/2026:20:19:07 -0500] "GET /.git/HEAD HTTP/1.1" 403 3839 "-" "Python-urllib/3.10"
...
show less
Web App Attack
๐ณ๐ฑ
ParaBug
2026-05-23 01:15:01
(3 weeks ago)
45.130.203.149 - - [23/May/2026:03:14:58 +0200] "GET /.git/HEAD HTTP/1.1" 404 3224 "-" "Python-urlli ...
show more
45.130.203.149 - - [23/May/2026:03:14:58 +0200] "GET /.git/HEAD HTTP/1.1" 404 3224 "-" "Python-urllib/3.10"
...
show less
Phishing
Brute-Force
Web App Attack
Anonymous
2026-05-23 00:30:12
(3 weeks ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ง๐ช
boxed-it
2026-05-22 23:26:53
(3 weeks ago)
GET /.git/HEAD (Tarpitted for 2m10s, wasted 7.73kB)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 12:37:02
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:36:55.752689 2026] [security2:error] [pid 10846:tid 10846] [client 45.130.203.149:37067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sanesoftware.com"] [uri "/.git/HEAD"] [unique_id "ahBN54pvfnJuZJqcffmDrQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 11:50:06
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 07:49:58.855088 2026] [security2:error] [pid 12163:tid 12163] [client 45.130.203.149:22831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rookscpa.com"] [uri "/.git/HEAD"] [unique_id "ahBC5iAN3BghUQhhWiYqzQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 11:03:53
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 07:03:48.352931 2026] [security2:error] [pid 13550:tid 13550] [client 45.130.203.149:53857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "richardpetersbooks.easyweb-publishing.com"] [uri "/.git/HEAD"] [unique_id "ahA4FBWYjGLTvUO1Uu7gMAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-05-22 06:02:02
(3 weeks ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/HEAD Se ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/HEAD Server: UK-01
show less
Web App Attack
Hacking
SQL Injection