๐ซ๐ท
masterguru
2026-03-30 07:43:30
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.3.46.140 (CA/Canada/-): 1 in the last 3600 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.3.46.140 (CA/Canada/-): 1 in the last 3600 secs (0-193)
show less
Hacking
๐ฑ๐ป
garmtech.com
2026-03-28 10:26:20
(2 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
๐ซ๐ท
masterguru
2026-03-27 21:36:02
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.3.46.140 (CA/Canada/-): 1 in the last 3600 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.3.46.140 (CA/Canada/-): 1 in the last 3600 secs (0-196)
show less
Hacking
๐ซ๐ท
masterguru
2026-03-27 11:10:34
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.3.46.140 (CA/Canada/-): 1 in the last 3600 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.3.46.140 (CA/Canada/-): 1 in the last 3600 secs (0-193)
show less
Hacking
๐จ๐ญ
backslash
2026-02-19 01:00:30
(3 months ago)
block ruleset 486D2EE5E731CC049D1E480D68D04DFFE28AADF1
Bad Web Bot
๐ต๐ฑ
sefinek.net
2025-12-31 17:17:21
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from CA.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 12.5; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-02 22:07:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 17:07:23.741745 2025] [security2:error] [pid 14902:tid 14902] [client 45.3.46.140:10321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shaunthomas.com"] [uri "/.env"] [unique_id "aS9jG7dXiPbDFefh3LailwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 20:47:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 15:47:19.780868 2025] [security2:error] [pid 1365:tid 1365] [client 45.3.46.140:42645] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goldeys.com"] [uri "/.svn/wc.db"] [unique_id "aS9QV3TmWa7sqJu-o-TBrwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 19:20:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 14:20:21.758488 2025] [security2:error] [pid 8852:tid 8852] [client 45.3.46.140:17141] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aaattanasio.com"] [uri "/.svn/wc.db"] [unique_id "aS879XbwFwbXzg0CtVxNowAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 13:30:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 08:30:51.450088 2025] [security2:error] [pid 20620:tid 20620] [client 45.3.46.140:43055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weddingcapitalpartners.com"] [uri "/.git/HEAD"] [unique_id "aS7qC9nS4qnwLnw4eqiqWwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 08:27:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:27:23.821372 2025] [security2:error] [pid 2060477:tid 2060477] [client 45.3.46.140:9433] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "actability.com"] [uri "/.svn/wc.db"] [unique_id "aS6i6yNo-ImA_xitm5XykgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:29:54
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:29:48.227542 2025] [security2:error] [pid 26936:tid 26936] [client 45.3.46.140:38299] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "produktives.com"] [uri "/.svn/wc.db"] [unique_id "aS55TOoO1TSlI9kMiabOBQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:46:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.46.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:46:49.648222 2025] [security2:error] [pid 4779:tid 4779] [client 45.3.46.140:59711] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "embeddedtrade.com"] [uri "/.env"] [unique_id "aS5vOcYC9V_vQQuSQ3W8QQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2025-12-01 13:50:02
(6 months ago)
GET /.aws/credentials HTTP/1.1
Web App Attack
Anonymous
2025-11-02 15:52:55
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 06:54:20
Port Scan
Brute-Force
Exploited Host
Web App Attack