πΊπΈ
TPI-Abuse
2025-12-05 08:21:02
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 05 03:20:57.438562 2025] [security2:error] [pid 27389:tid 27389] [client 45.3.41.239:40609] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "liquid-libido.com"] [uri "/.git/HEAD"] [unique_id "aTKV6Z8d9FLEo2TB3lEctQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-05 04:40:04
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 23:39:56.665729 2025] [security2:error] [pid 31368:tid 31368] [client 45.3.41.239:39333] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wanderlust-fineartphotos.com"] [uri "/.svn/wc.db"] [unique_id "aTJiHOYMJeeuOqyQujdN3QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 05:27:22
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:27:17.166838 2025] [security2:error] [pid 25644:tid 25644] [client 45.3.41.239:54013] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.presucad.com"] [uri "/.git/HEAD"] [unique_id "aSaPtfeCSqT9aEY7VofrkwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 01:33:27
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:33:18.681569 2025] [security2:error] [pid 29030:tid 29030] [client 45.3.41.239:34843] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.myrtlebeachpartybuses.com"] [uri "/.env"] [unique_id "aSZY3gUewRQ1mLo78t4SXgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 00:34:23
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:34:17.805597 2025] [security2:error] [pid 14431:tid 14431] [client 45.3.41.239:29947] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.victotex.com"] [uri "/.git/HEAD"] [unique_id "aST5ia_7DjN2Yp-Kqd3kqQAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:08:49
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:08:30.594979 2025] [security2:error] [pid 2597:tid 2597] [client 45.3.41.239:10275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.enriquelaw.com"] [uri "/.svn/wc.db"] [unique_id "aSQSflgQPnBrSERpPYHRygAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 07:31:33
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:31:27.968697 2025] [security2:error] [pid 10693:tid 10693] [client 45.3.41.239:50647] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.beach98.com"] [uri "/.svn/wc.db"] [unique_id "aSQJz-0weVyXcqK323CnlQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 06:38:59
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:38:50.448043 2025] [security2:error] [pid 31951:tid 31951] [client 45.3.41.239:45553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.russellhouse.net"] [uri "/.env"] [unique_id "aSP9eh5uSHIR2Wcka91SswAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 05:20:10
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:20:00.768004 2025] [security2:error] [pid 31626:tid 31626] [client 45.3.41.239:30469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.melkanbassil.com"] [uri "/.env"] [unique_id "aSPrAA9i4STfsDRUPgG-MwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-02 22:28:00
(9 months ago)
Unauthorized connection attempt
Brute-Force
πΊπΈ
TPI-Abuse
2025-10-18 19:10:55
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 18 15:10:40.884161 2025] [security2:error] [pid 1870:tid 1894] [client 45.3.41.239:42789] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||artisanorgans.intartists.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "artisanorgans.intartists.com"] [uri "/mailto:[email protected] "] [unique_id "aPPmMOEzRNt_58OORW2_MgAAABE"], referer: https://artisanorgans.intartists.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-03-06 03:28:04
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 05 22:27:58.174500 2025] [security2:error] [pid 3645:tid 3645] [client 45.3.41.239:40309] [client 45.3.41.239] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||runningsaluki.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "runningsaluki.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z8kWPheoVtFRz6K-biNRxAAAAD0"], referer: https://runningsaluki.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-22 23:23:25
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 22 18:23:18.707999 2025] [security2:error] [pid 1003616:tid 1003616] [client 45.3.41.239:39481] [client 45.3.41.239] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rcjlawfirm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rcjlawfirm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z7pcZsw5OYRiIa-U3F8Q8wAAABA"], referer: https://rcjlawfirm.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-12-19 10:46:52
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.41.239 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 19 05:46:45.108520 2024] [security2:error] [pid 21083:tid 21083] [client 45.3.41.239:34017] [client 45.3.41.239] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||directcch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "directcch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z2P5lUJ_mQ_hwRG377kviQAAAA0"], referer: https://directcch.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
PulseServers
2024-11-10 00:51:50
(1 year ago)
Malicious Web Traffic - Exploit probing, request floods, etc. on a server hosted by PulseServers.com ...
show more
Malicious Web Traffic - Exploit probing, request floods, etc. on a server hosted by PulseServers.com - ISUS1
...
show less
DDoS Attack
Exploited Host