πΊπΈ
TPI-Abuse
2026-06-26 17:24:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 13:24:12.190481 2026] [security2:error] [pid 17023:tid 17023] [client 45.130.203.202:23937] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ifmamasang.com"] [uri "/.env"] [unique_id "aj61vC0a0zjz6MLGutYMUQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
SCHAPPY
2026-06-26 13:01:06
(2 days ago)
Brute-force attack to identify web exploits
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-26 10:59:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 06:59:45.743699 2026] [security2:error] [pid 13405:tid 13405] [client 45.130.203.202:64527] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.etudesoftware.com"] [uri "/.env"] [unique_id "aj5boc4Aa3oNgoMKMe34XgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-26 04:18:01
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 00:17:54.562239 2026] [security2:error] [pid 1749:tid 1749] [client 45.130.203.202:59067] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.braintechsoftwaresolutions.com"] [uri "/.env"] [unique_id "aj39crKHd_Sylo-PDJGDHwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-25 23:06:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 19:06:37.781345 2026] [security2:error] [pid 15417:tid 15417] [client 45.130.203.202:42793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.calendarcardsholiday.com"] [uri "/.env.production"] [unique_id "aj20fZi8taXy2FhpQAWJJgAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-25 19:47:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 15:47:06.416323 2026] [security2:error] [pid 21740:tid 21740] [client 45.130.203.202:30841] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.artworkbyjen.hatfulofrain.com"] [uri "/.env.production"] [unique_id "aj2Fuo9x7kaW0dKzRLL1_wAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
mrcrassi
2026-06-25 16:35:02
(3 days ago)
Triggered Cloudflare WAF (bic) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint ...
show more
Triggered Cloudflare WAF (bic) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/HEAD
UA: Python-urllib/3.10
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-06-25 09:07:50
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 05:07:44.845962 2026] [security2:error] [pid 7049:tid 7049] [client 45.130.203.202:25993] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "volkerjahn.link.theholographicseed.com"] [uri "/.git/HEAD"] [unique_id "ajzv4N0tZxb2p6KcRn5tBwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-25 05:24:56
(3 days ago)
Try to connect to Port_Scan_80_stealth
Port Scan
πΊπΈ
TPI-Abuse
2026-06-25 03:31:43
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 23:31:36.704516 2026] [security2:error] [pid 21079:tid 21079] [client 45.130.203.202:42771] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hakanbasboga.com"] [uri "/.git/HEAD"] [unique_id "ajyhGN_oMrvGLS9peb_IZQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-25 02:06:43
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 22:06:38.041473 2026] [security2:error] [pid 2876:tid 2876] [client 45.130.203.202:32675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.thegoldreserve.com"] [uri "/.env"] [unique_id "ajyNLlkaeKawWzk_GiiwdAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-25 01:30:35
(3 days ago)
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy ...
show more
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy β zero tolerance for exploit scanning. Banned Jun 25, 01:30 UTC. Origin: Germany, Frankfurt am Main.
show less
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-25 01:18:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 21:18:10.431841 2026] [security2:error] [pid 26485:tid 26485] [client 45.130.203.202:50609] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.comicpreservation.com"] [uri "/.env"] [unique_id "ajyB0m-fxXnXoZJaAhoHSgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-25 00:33:40
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 20:33:33.514465 2026] [security2:error] [pid 20365:tid 20365] [client 45.130.203.202:44251] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.idmadventures.com"] [uri "/.git/HEAD"] [unique_id "ajx3XWDpO1C_tb1sUmfKrQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-24 23:49:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 19:48:55.598088 2026] [security2:error] [pid 478:tid 478] [client 45.130.203.202:29445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lastreetsbykarensperling.com"] [uri "/.git/HEAD"] [unique_id "ajxs5w7PWAJ7Z81x8LGO4QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack