๐บ๐ธ
TPI-Abuse
2025-11-25 05:20:14
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:20:07.156752 2025] [security2:error] [pid 6399:tid 6399] [client 45.3.40.217:53223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.masterfulenlighteningfreestudies.org"] [uri "/.git/HEAD"] [unique_id "aSU8h9BnGOpR0OFLSJQeVgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:40:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:40:46.619976 2025] [security2:error] [pid 21544:tid 21544] [client 45.3.40.217:56977] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.ouguergouz.com"] [uri "/.git/HEAD"] [unique_id "aSUzTqoJdaq4Ic9Z6hzdEAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:42:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:42:26.348927 2025] [security2:error] [pid 19319:tid 19319] [client 45.3.40.217:43577] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.maprada92.com"] [uri "/.env"] [unique_id "aSUXkkLgTLOnGG7B5m0GeAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:18:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:18:10.860011 2025] [security2:error] [pid 1345:tid 1345] [client 45.3.40.217:29587] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cbtattam.com"] [uri "/.svn/wc.db"] [unique_id "aSUR4tRfaExXT-DPrbyvswAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:25:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:25:30.704791 2025] [security2:error] [pid 16531:tid 16531] [client 45.3.40.217:14237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.peterlundman.com"] [uri "/.env"] [unique_id "aSUFinozB0W4Q1VAX1myxQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:03:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:03:18.760430 2025] [security2:error] [pid 16586:tid 16586] [client 45.3.40.217:51011] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.yarbroughfamily.org"] [uri "/.svn/wc.db"] [unique_id "aSUAVgqdb2okq8lwU9yBBgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:14:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:14:26.573071 2025] [security2:error] [pid 8400:tid 8400] [client 45.3.40.217:30085] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "secure.centuryabsinthe.com"] [uri "/.svn/wc.db"] [unique_id "aST04vNyhzEaDRe-1qZZlgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-02 22:09:18
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 07:30:48
Port Scan
Brute-Force
Exploited Host
Web App Attack
Anonymous
2025-11-02 16:02:00
(7 months ago)
Unauthorized connection attempt
Brute-Force
๐ฉ๐ช
ps-center
2025-10-19 02:13:49
(7 months ago)
C1-W: TCP-Scanner. Port: 22
Port Scan
๐ฎ๐น
Progetto1
2025-03-15 03:58:03
(1 year ago)
Mail - Multiple failed login attempts
Brute-Force
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-02-14 18:06:39
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 14 13:06:34.680933 2025] [security2:error] [pid 8426:tid 8426] [client 45.3.40.217:40803] [client 45.3.40.217] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||berklie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "berklie.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z6-GKjjFPcIFNAvclG-DlAAAAAM"], referer: https://berklie.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-12 01:01:06
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.40.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 11 20:01:02.961716 2025] [security2:error] [pid 31695:tid 31695] [client 45.3.40.217:37733] [client 45.3.40.217] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||yogitunes.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "yogitunes.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z6vyzt2fUmAbx-f5Icgy-gAAABE"], referer: https://yogitunes.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-08-21 06:09:20
(1 year ago)
(mod_security) mod_security triggered on hostname [redacted] 45.3.40.217 (US/United States/-): (CF_ ...
show more
(mod_security) mod_security triggered on hostname [redacted] 45.3.40.217 (US/United States/-): (CF_ENABLE)
show less
SQL Injection