๐ฉ๐ช
Lino Project
2026-06-24 14:40:20
(2 months ago)
45.3.50.154 - - [24/Jun/2026:16:40:18 +0200] "GET /xmlrpc.php HTTP/1.1" 403 3972 "https://www.primob ...
show more
45.3.50.154 - - [24/Jun/2026:16:40:18 +0200] "GET /xmlrpc.php HTTP/1.1" 403 3972 "https://www.primobio.it/mio-account/?action=register" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-06-09 19:05:51
(2 months ago)
SQL backup theft attempt
Hacking
๐ซ๐ฎ
JimArchon72
2026-06-06 07:05:01
(2 months ago)
2026/06/06 07:01:18 "GET /wp-login.php?action=register HTTP/1.1"
Web App Attack
๐ซ๐ฎ
as211431.net
2026-05-26 02:08:09
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /index.php
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/26.2 Safari/605.1.15
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-05-01 13:10:02
(3 months ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
4server
2026-04-21 03:28:14
(4 months ago)
[TueApr2105:28:10.7635412026][security2:error][pid2167728:tid2167742][client45.3.50.154:0]ModSecurit ...
show more
[TueApr2105:28:10.7635412026][security2:error][pid2167728:tid2167742][client45.3.50.154:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"domoticaswiss.ch\"][uri\"/data.sql\"][unique_id\"aebuytcwffGXaSPwjehRXgAAAAs\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
MusicLibrary
2026-04-19 13:54:17
(4 months ago)
Attempted access to sensitive configuration files (.env, .git, etc.)
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-03-25 15:07:11
(5 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Linux x86_64; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
octageeks.com
2026-03-05 05:11:13
(5 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 20:49:59
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 15:49:54.521651 2026] [security2:error] [pid 898989:tid 898989] [client 45.3.50.154:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ard.global"] [uri "/.env.local"] [unique_id "aYzrcraX_Rx4vLXZApUO6wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oncord
2026-02-11 18:23:09
(6 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-02-10 06:27:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:27:37.925623 2026] [security2:error] [pid 6760:tid 6760] [client 45.3.50.154:18199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iktonline.org"] [uri "/.env.local"] [unique_id "aYrP2Q8EsfpXPs9vPqfcLgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 04:02:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 23:01:52.795150 2026] [security2:error] [pid 31794:tid 31794] [client 45.3.50.154:60433] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icbsmonitor.net"] [uri "/.env.local"] [unique_id "aYqtsD1TRaWb2ij4qZfI3AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:22:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:22:36.163654 2026] [security2:error] [pid 19364:tid 19364] [client 45.3.50.154:32633] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iamnotguilty.com"] [uri "/config/.env"] [unique_id "aYqkfF9Yf1noW8xm1dbXKgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 23:28:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.50.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 18:28:05.207181 2026] [security2:error] [pid 26891:tid 26891] [client 45.3.50.154:37197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keithgill.com"] [uri "/wp/.git/config"] [unique_id "aYpthX-UrU635l1cMG9oyQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack