๐ซ๐ท
SpaceHost-Server
2026-06-01 22:34:27
(2 weeks ago)
Brute-Force
Web App Attack
Anonymous
2026-06-01 17:21:31
(2 weeks ago)
Fail2Ban triggered
Web App Attack
๐ฏ๐ต
SentinalX by uzumaru
2026-05-28 02:30:56
(3 weeks ago)
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show more
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: netiptv.eu:80
show less
Open Proxy
Port Scan
๐ฑ๐ป
garmtech.com
2026-05-08 21:43:49
(1 month ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 00-43.45.130.81.48.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 00-43.45.130.81.48.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐น๐ท
Doruk
2026-04-23 23:30:02
(1 month ago)
Unauthorized connection attempt
Brute-Force
Anonymous
2026-04-03 02:19:20
(2 months ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-03-31 10:30:04
(2 months ago)
Wordfence waf block on fairregistry
Web App Attack
๐ฌ๐ง
relianoid.com
2026-03-21 05:28:25
(3 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
๐บ๐ธ
oncord
2026-02-25 01:03:55
(3 months ago)
Form spam
Web Spam
Anonymous
2026-02-23 19:00:16
(3 months ago)
[redacted] 45.130.81.48 - - [23/Feb/2026:20:00:10 +0100] "GET /admin/function.php HTTP/1.1" 404 236 ...
show more
[redacted] 45.130.81.48 - - [23/Feb/2026:20:00:10 +0100] "GET /admin/function.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36"
[redacted] 45.130.81.48 - - [23/Feb/2026:20:00:10 +0100] "GET /wp-includes/js/crop/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/79.0.3945.79 Safari/537.36"
[redacted] 45.130.81.48 - - [23/Feb/2026:20:00:11 +0100] "GET /wp-includes/PHPMailer/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36 OPR/70.0.3728.95"
[redacted] 45.130.81.48 - - [23/Feb/2026:20:00:13 +0100] "GET /.well-known/pki-validation/admin.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
[redacted] 45.
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 20:19:35
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.48 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 15:19:30.377741 2026] [security2:error] [pid 25885:tid 25885] [client 45.130.81.48:44661] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bitcoinsquaretrade.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bitcoinsquaretrade.com"] [uri "/backup/sql.sql"] [unique_id "aY410nLnI67xWT4pQFppaAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-03 17:18:13
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.48 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 03 12:18:09.956232 2026] [security2:error] [pid 24976:tid 24976] [client 45.130.81.48:33095] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nationalenq.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nationalenq.com"] [uri "/bak/sql.sql"] [unique_id "aYIt0UieTHG9ay4rmBSHtwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Penny Packer
2026-01-25 00:20:39
(4 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-11 13:14:51
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 45.130.81.48 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.130.81.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 11 08:14:46.820701 2025] [security2:error] [pid 4333:tid 4333] [client 45.130.81.48:41869] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||usbea.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "usbea.com"] [uri "/backup/sql.sql"] [unique_id "aTrDxpla_xij2m_P-z00fAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Penny Packer
2025-12-07 02:27:15
(6 months ago)
Fail2Ban apache-tripwires
Web App Attack