๐ฉ๐ช
gnb
2026-07-04 14:50:13
(2 months ago)
45.130.81.115 - - [04/Jul/2026:16:50:12 +0200] www.(redacted) "GET /mail_bestellung.php?from=http:// ...
show more
45.130.81.115 - - [04/Jul/2026:16:50:12 +0200] www.(redacted) "GET /mail_bestellung.php?from=http://the-guitarworkshop.com HTTP/1.1" 302 539 "http://www.(redacted)/" "Mozilla/5.0 (X11; Linux x86_64; rv:140.0) Gecko/20100101 Firefox/140.0"
...
show less
Web Spam
Bad Web Bot
๐ซ๐ท
ELYAZ
2026-07-01 16:19:30
(2 months ago)
(wordpress) Failed wordpress login from 45.130.81.115 (UA/Ukraine/-): (CF_ENABLE)
Brute-Force
๐ฆ๐บ
nzhost.co.nz
2026-06-16 20:39:22
(2 months ago)
$f2bV_matches
Hacking
Brute-Force
๐ฆ๐บ
MAGIC
2026-06-14 01:00:24
(2 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฑ๐ป
garmtech.com
2026-05-24 10:29:36
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 13-29.45.130.81.115.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 13-29.45.130.81.115.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 13:11:04
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:11:01.031619 2026] [security2:error] [pid 22540:tid 22540] [client 45.130.81.115:22121] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||3rdplanetguide.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "3rdplanetguide.net"] [uri "/archivarix.cms.php"] [unique_id "ahBV5eHGjtpdLhpCtcjH6wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 16:03:59
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 12:03:07.028858 2026] [security2:error] [pid 6765:tid 6776] [client 45.130.81.115:53299] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||tvpin.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "tvpin.com"] [uri "/index.cgi"] [unique_id "ag3bOwoKkrfPLengCjRdbwAAAAk"], referer: http://tvpin.com/index.cgi
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 15:48:32
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 11:48:25.744148 2026] [security2:error] [pid 28207:tid 28207] [client 45.130.81.115:34781] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||2ndwaveai.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "2ndwaveai.com"] [uri "/archivarix.cms.php"] [unique_id "ag3XyWfhahsxnxLpOpviGQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 14:38:03
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.130.81.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 10:37:58.788201 2026] [security2:error] [pid 7373:tid 7373] [client 45.130.81.115:35593] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.247.fishing|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.247.fishing"] [uri "/archivarix.cms.php"] [unique_id "ag3HRqNHFQ6Wlr85_5AruQAAABE"], referer: http://24seven.fishing/archivarix.cms.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-05-11 17:20:04
(3 months ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
Anonymous
2026-05-11 16:55:45
(3 months ago)
Fail2Ban triggered
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-05-07 23:26:49
(3 months ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
NL/Netherlands/-
Web App Attack
๐ง๐ช
cmbplf
2026-05-05 01:30:37
(4 months ago)
436 requests with url.path //xmlrpc.php
Brute-Force
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2026-05-05 00:44:50
(4 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐ฉ๐ช
2048
2026-05-04 13:35:44
(4 months ago)
2026-05-04T15:35:40.577108+02:00 machodeer kernel: [609656.186772] [UFW BLOCK] IN=ens3 OUT= MAC=REDA ...
show more
2026-05-04T15:35:40.577108+02:00 machodeer kernel: [609656.186772] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=45.130.81.115 DST=REDACTED LEN=60 TOS=0x08 PREC=0x20 TTL=49 ID=56491 DF PROTO=TCP SPT=53515 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
2026-05-04T15:35:41.585440+02:00 machodeer kernel: [609657.195493] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=45.130.81.115 DST=REDACTED LEN=60 TOS=0x08 PREC=0x20 TTL=49 ID=56492 DF PROTO=TCP SPT=53515 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
2026-05-04T15:35:43.600830+02:00 machodeer kernel: [609659.211405] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=45.130.81.115 DST=REDACTED LEN=60 TOS=0x08 PREC=0x20 TTL=49 ID=56493 DF PROTO=TCP SPT=53515 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
show less
Port Scan