๐ฎ๐น
VHosting
2026-02-18 22:11:38
(3 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-01-16 07:58:23
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 16 02:58:20.029274 2026] [security2:error] [pid 10210:tid 10210] [client 45.3.48.100:60949] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||savethedatecardsonline.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "savethedatecardsonline.com"] [uri "/s3cmd.ini"] [unique_id "aWnvnLPiy49_VlbAFRfchQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-16 06:25:18
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 16 01:25:10.723289 2026] [security2:error] [pid 879949:tid 879949] [client 45.3.48.100:45015] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sailsara.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sailsara.com"] [uri "/s3cmd.ini"] [unique_id "aWnZxkVo6UmA3WJ2j2WmpwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2025-12-28 16:30:42
(5 months ago)
(mod_security) mod_security triggered on hostname [redacted] 45.3.48.100 (US/United States/-)
SQL Injection
๐ฉ๐ช
Petros Stefanakis
2025-12-25 23:05:29
(5 months ago)
(mod_security) mod_security triggered on hostname [redacted] 45.3.48.100 (US/United States/-)
SQL Injection
Anonymous
2025-12-22 17:17:10
(5 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐ณ๐ฑ
jjnxpct
2025-12-16 04:48:26
(5 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /wp-config.php.save (Rule ID: 920440) - URL file extension is restricted by policy
show less
Hacking
SQL Injection
Web App Attack
๐ฑ๐ป
garmtech.com
2025-12-04 15:31:50
(6 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:17-31.45.3.48.100
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 11:13:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:13:08.024158 2025] [security2:error] [pid 14705:tid 14705] [client 45.3.48.100:21515] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bioemperor.com"] [uri "/.env"] [unique_id "aSbgxKCERAlN07VUAjRxtQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 10:23:57
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:23:49.628501 2025] [security2:error] [pid 12028:tid 12028] [client 45.3.48.100:28477] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.truecontrarian.com"] [uri "/.env"] [unique_id "aSbVNeVCYVRtdeiOx0aSGAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:34:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:34:16.013068 2025] [security2:error] [pid 25024:tid 25024] [client 45.3.48.100:37555] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.webjemm.net"] [uri "/.svn/wc.db"] [unique_id "aSa7iC5DTpSj-UkafeIR3QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:51:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:51:18.169734 2025] [security2:error] [pid 5318:tid 5341] [client 45.3.48.100:41717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.rcorbet.net"] [uri "/.env"] [unique_id "aSajZotQIEBqnJukf2LhTwAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:10:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:10:36.239754 2025] [security2:error] [pid 2650:tid 2670] [client 45.3.48.100:26037] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.condobudget.com"] [uri "/.git/HEAD"] [unique_id "aSaZ3KcpXMNW-93ob63PnwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:23:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:23:50.387717 2025] [security2:error] [pid 20745:tid 20745] [client 45.3.48.100:51151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.doubleandup.com"] [uri "/.env"] [unique_id "aSZyxmuOH7iteUz15FnRZwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:06:47
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:06:43.144948 2025] [security2:error] [pid 2134358:tid 2134358] [client 45.3.48.100:29529] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.anayjosecollectionclub.com"] [uri "/.svn/wc.db"] [unique_id "aSZEk00uwGOku8sHz3yrwwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack