๐จ๐ณ
ThreatBook.io
2026-05-07 22:22:36
(4 weeks ago)
ThreatBook Intelligence: Gateway more details on http://threatbook.io/ip/45.3.48.208
2026-05-07 18:2 ...
show more
ThreatBook Intelligence: Gateway more details on http://threatbook.io/ip/45.3.48.208
2026-05-07 18:27:19 /
2026-05-07 19:00:17 /
2026-05-07 18:51:49 /
2026-05-07 18:24:48 /
2026-05-07 18:27:00 /
show less
Web App Attack
๐ฎ๐น
VHosting
2025-12-23 19:35:54
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-12-02 17:23:47
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 12:23:39.579266 2025] [security2:error] [pid 703:tid 703] [client 45.3.48.208:10097] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oakvillenaturopathicclinic.com"] [uri "/.env"] [unique_id "aS8gm0VYTF_aeU4WOyDLXwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 14:26:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 09:26:07.059400 2025] [security2:error] [pid 2345:tid 2345] [client 45.3.48.208:17449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ibken.com"] [uri "/.svn/wc.db"] [unique_id "aS72_7teNG0KtJdvlUCi7wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 08:28:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:28:11.271099 2025] [security2:error] [pid 26101:tid 26101] [client 45.3.48.208:24837] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "javathecup.com"] [uri "/.env"] [unique_id "aS6jGxEYiqWmthzalnFk7wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 08:03:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:02:56.958195 2025] [security2:error] [pid 12510:tid 12510] [client 45.3.48.208:14339] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brenna-droege.com"] [uri "/.svn/wc.db"] [unique_id "aS6dML7_mxjKvWgmfNQ6uAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-11-26 22:29:54
(6 months ago)
ThreatBook Intelligence: vpn_proxy,Gateway more details on https://threatbook.io/ip/45.3.48.208
2025 ...
show more
ThreatBook Intelligence: vpn_proxy,Gateway more details on https://threatbook.io/ip/45.3.48.208
2025-11-26 17:35:20 /.git/HEAD
2025-11-26 17:29:28 /.svn/wc.db
2025-11-26 17:25:37 /.git/HEAD
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 12:46:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 07:46:02.803433 2025] [security2:error] [pid 22338:tid 22338] [client 45.3.48.208:60989] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sirclive.com.cosentient.com"] [uri "/.svn/wc.db"] [unique_id "aSb2ipyX0AZVp-iadG0nHAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 08:54:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 03:54:46.767964 2025] [security2:error] [pid 25440:tid 25440] [client 45.3.48.208:21659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.divingmachines.com"] [uri "/.git/HEAD"] [unique_id "aSbAVmL1jB0uIfU2xR9pIAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 07:02:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 02:02:41.633983 2025] [security2:error] [pid 22457:tid 22457] [client 45.3.48.208:10951] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.barabesi.net"] [uri "/.env"] [unique_id "aSamEaBCUnx_7FEcCMMkJwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 05:51:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:51:29.194943 2025] [security2:error] [pid 5392:tid 5418] [client 45.3.48.208:55051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gbodtheatre.com"] [uri "/.env"] [unique_id "aSaVYTE9pbPJjmUZUrRlCAAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:17:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:17:06.168311 2025] [security2:error] [pid 31431:tid 31431] [client 45.3.48.208:20245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ismycorporationsafe.com"] [uri "/.git/HEAD"] [unique_id "aSZxMjmU5c0K9yiPZri5RQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 11:03:18
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-07 09:50:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.48.208 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 07 04:50:04.715973 2025] [security2:error] [pid 8408:tid 8408] [client 45.3.48.208:43455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mariedjones.com"] [uri "/.env"] [unique_id "aQ3AzA_OjXkkYEdQVr033gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-06 14:09:39
(6 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack