Anonymous
2026-08-05 18:12:11
(2 weeks ago)
Banned by SPAMHAUS ASN-DROP list (ASN: 200373)
DDoS Attack
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-08-05 00:21:29
(2 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
Dorian GRANDHAY
2026-05-25 05:37:54
(2 months ago)
45.3.32.225 (US/United States/-), 5 distributed cpanel attacks on account [root] in the last 3600 se ...
show more
45.3.32.225 (US/United States/-), 5 distributed cpanel attacks on account [root] in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_DISTATTACK; Logs: [2026-05-25 07:37:48 +0200] info [whostmgrd] 43.153.90.212 - root "POST /login/?login_only=1 HTTP/1.1" FAILED LOGIN whostmgrd: user password incorrect
[2026-05-25 07:37:48 +0200] info [whostmgrd] 45.3.32.225 - root "POST /login/?login_only=1 HTTP/1.1" FAILED LOGIN whostmgrd: user password incorrect
[2026-05-25 07:37:48 +0200] info [whostmgrd] 75.63.212.229 - root "POST /login/?login_only=1 HTTP/1.1" FAILED LOGIN whostmgrd: user password incorrect
[2026-05-25 07:37:48 +0200] info [whostmgrd] 54.249.198.49 - root "POST /login/?login_only=1 HTTP/1.1" FAILED LOGIN whostmgrd: user password incorrect
[2026-05-25 07:37:48 +0200] info [whostmgrd] 103.172.18.46 - root "POST /login/?login_only=1 HTTP/1.1" FAILED LOGIN whostmgrd: user password incorrect
IP Addresses Blocked:
43.153.90.212 (US/United States/-)
show less
Port Scan
๐ฑ๐ป
garmtech.com
2026-03-21 05:40:36
(5 months ago)
IM360 WAF: Possible SQL injection attack MV:RAND'))--
SQL Injection
๐บ๐ธ
mnsf
2026-02-15 23:06:20
(6 months ago)
Too many Status 40X (12)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-02-15 11:33:18
(6 months ago)
(modsecurity) srv101 ModSecurity 45.3.32.225 (US/United States/-): 5 in the last 3600 secs; Ports: * ...
show more
(modsecurity) srv101 ModSecurity 45.3.32.225 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 05:14:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 00:14:41.445002 2026] [security2:error] [pid 22199:tid 22236] [client 45.3.32.225:21891] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "super-8mm.net"] [uri "/app/.env"] [unique_id "aZFWQb6k6LPKjSLyJxBsqwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 03:06:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:06:21.857943 2026] [security2:error] [pid 26214:tid 26214] [client 45.3.32.225:24821] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stacyfarm.com"] [uri "/admin/.env"] [unique_id "aZE4LeD0fdPmlrn4UjtcKgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 01:54:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:54:24.329590 2026] [security2:error] [pid 17541:tid 17541] [client 45.3.32.225:10621] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mydarklady.com"] [uri "/test/.git/config"] [unique_id "aZEnUGYoekGwNN1tjZMVHQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-15 01:03:16
(6 months ago)
Blocking for trying to access an exploit file: /frontend/.env
Hacking
๐ท๐บ
loveprod
2026-02-15 00:24:47
(6 months ago)
45.3.32.225 - - [15/Feb/2026:03:24:42 +0300] "GET /app/.env HTTP/1.1" 301 363 "-" "Mozilla/5.0 (Wind ...
show more
45.3.32.225 - - [15/Feb/2026:03:24:42 +0300] "GET /app/.env HTTP/1.1" 301 363 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
45.3.32.225 - - [15/Feb/2026:03:24:46 +0300] "GET /backend/.env HTTP/1.1" 301 367 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-14 22:49:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:48:57.376559 2026] [security2:error] [pid 23738:tid 23738] [client 45.3.32.225:30975] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "linearconceptsllc.com"] [uri "/api/.git/config"] [unique_id "aZD72dhtlIl38f5UzseuyQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-14 22:06:23
(6 months ago)
Too many Status 40X (12)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 21:29:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 16:29:06.415882 2026] [security2:error] [pid 23443:tid 23443] [client 45.3.32.225:31837] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "legalnexusbali.com"] [uri "/.env.local"] [unique_id "aZDpIsT6fiYnNeHWoJDT4QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-10 06:05:14
(7 months ago)
wordpress-trap
Web App Attack