π«π·
mail.avx.gr
2026-08-23 00:11:51
(14 hours ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.130.203.240 - - [20/Aug/2026:06:44:12 +0300] " ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.130.203.240 - - [20/Aug/2026:06:44:12 +0300] "GET /.git/HEAD HTTP/1.1" 404 808 "-" "Python-urllib/3.10"
show less
Web App Attack
π¬π·
mail.avx.gr
2026-08-21 17:36:08
(1 day ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.130.203.240 - - [20/Aug/2026:06:44:12 +0300] " ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.130.203.240 - - [20/Aug/2026:06:44:12 +0300] "GET /.git/HEAD HTTP/1.1" 404 808 "-" "Python-urllib/3.10"
show less
Web App Attack
π«π·
mail.avx.gr
2026-08-20 03:44:19
(3 days ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.130.203.240 - - [20/Aug/2026:06:44:12 +0300] " ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 45.130.203.240 - - [20/Aug/2026:06:44:12 +0300] "GET /.git/HEAD HTTP/1.1" 404 808 "-" "Python-urllib/3.10"
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 18:52:57
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 14:52:49.329681 2026] [security2:error] [pid 31478:tid 31478] [client 45.130.203.240:43231] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ggaccounting.services"] [uri "/.git/HEAD"] [unique_id "aoX7gfNveU4T7hErPlujZQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-08-15 23:22:13
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
π³π±
homeshowdomain.nl
2026-08-15 21:59:17
(1 week ago)
Auto-ban: >3000 req/min op 2026-08-15
Web App Attack
SSH
Hacking
π©πͺ
LRob
2026-08-15 10:57:49
(1 week ago)
Credential and secrets file probing | req: /.env | UA: Python-urllib/3.10
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-15 04:06:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 00:06:48.744847 2026] [security2:error] [pid 27549:tid 27580] [client 45.130.203.240:28189] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "busybeerestaurant.com"] [uri "/.env.production"] [unique_id "an_l2FaV3CfvTo-V9LUWRwAAAUI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-08-15 04:00:09
(1 week ago)
[15/Aug/2026:07:00:09 +0300] -- 45.130.203.240 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-15 02:53:59
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 22:53:51.932745 2026] [security2:error] [pid 17158:tid 17158] [client 45.130.203.240:51101] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "itre.org"] [uri "/.env"] [unique_id "an_Uv55zomUvkOcujKA_RQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Gabriel Camargo
2026-08-15 01:14:46
(1 week ago)
45.130.203.240 - - [14/Aug/2026:20:14:44 -0500] "GET /.git/HEAD HTTP/1.1" 301 178 "-" "Python-urllib ...
show more
45.130.203.240 - - [14/Aug/2026:20:14:44 -0500] "GET /.git/HEAD HTTP/1.1" 301 178 "-" "Python-urllib/3.10"
45.130.203.240 - - [14/Aug/2026:20:14:45 -0500] "GET /.git/HEAD HTTP/1.1" 301 178 "-" "Python-urllib/3.10"
45.130.203.240 - - [14/Aug/2026:20:14:45 -0500] "GET /.git/HEAD HTTP/1.1" 301 178 "-" "Python-urllib/3.10"
...
show less
Brute-Force
SSH
πΊπΈ
TPI-Abuse
2026-08-15 01:11:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 21:11:37.738704 2026] [security2:error] [pid 11140:tid 11140] [client 45.130.203.240:59245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "afjm.org"] [uri "/.env.production"] [unique_id "an-8yQtRQ4kfWBvisPxpCAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-14 22:41:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 18:41:32.662406 2026] [security2:error] [pid 1217085:tid 1217098] [client 45.130.203.240:46575] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anna.salvoni.com"] [uri "/.git/HEAD"] [unique_id "an-ZnFNj0gOzBa2U51JF_gAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack