๐บ๐ธ
TPI-Abuse
2026-02-15 03:09:09
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:09:01.907970 2026] [security2:error] [pid 1219474:tid 1219474] [client 45.3.48.156:23273] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "niximperial.com"] [uri "/app/.git/config"] [unique_id "aZE4zWR-367NOo_HhcjaXQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 02:46:28
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:46:25.217792 2026] [security2:error] [pid 13635:tid 13635] [client 45.3.48.156:44883] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nickersoncarpentry.com"] [uri "/wp/.git/config"] [unique_id "aZEzgYrnhif9PmEacThCugAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 02:22:59
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:22:51.613176 2026] [security2:error] [pid 2199:tid 2199] [client 45.3.48.156:53565] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "player-care.com"] [uri "/.env.local"] [unique_id "aZEt-7vnTN2Mb7j8MDPNIwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ingroscart.it
2026-02-15 01:40:27
(3 months ago)
(mod_security) mod_security triggered on hostname [redacted] 45.3.48.156 (US/United States/-)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-02-15 01:30:59
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:30:56.081971 2026] [security2:error] [pid 16260:tid 16260] [client 45.3.48.156:41055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ronniejohnson.net"] [uri "/backup/.git/config"] [unique_id "aZEh0Btn8HhACbuXE-tHqwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-02-15 01:13:03
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 01:09:07
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 20:09:00.436943 2026] [security2:error] [pid 28732:tid 28732] [client 45.3.48.156:40917] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naturallyneworleans.com"] [uri "/wp/.git/config"] [unique_id "aZEcrDeyU_ct-g6IjOgZ9AAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 00:49:19
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 19:49:13.550988 2026] [security2:error] [pid 8714:tid 8714] [client 45.3.48.156:20435] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robk64.com"] [uri "/backup/.git/config"] [unique_id "aZEYCbGUV9hvDWAPFpd1egAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
fbarela
2025-12-29 02:00:18
(5 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-27 19:26:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 14:26:33.986855 2025] [security2:error] [pid 13045:tid 13066] [client 45.3.48.156:29165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asetiadi.net"] [uri "/.svn/wc.db"] [unique_id "aSil6Zw4Fizu8O7oXWHbcgAAARM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 19:58:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 14:58:00.215844 2025] [security2:error] [pid 2830:tid 2834] [client 45.3.48.156:43839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "richardleeweatherman.com"] [uri "/.env"] [unique_id "aSdbyD9QofIVCqsm7DYgxgAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-16 04:26:29
(6 months ago)
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.11.16 is noted in report tim ...
show more
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.11.16 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-11 18:33:59
(6 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.11 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.11 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-03 14:53:16
(7 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.03 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.03 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-02 16:06:56
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 06:59:43
Port Scan
Brute-Force
Exploited Host
Web App Attack