🇸🇪
OnTheEdge
2026-09-03 06:11:40
(4 days ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
🇸🇪
OnTheEdge
2026-09-03 06:11:40
(4 days ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
🇫🇷
IRISIO
2026-07-27 07:12:22
(1 month ago)
scans/SQL injection/spam posts : 2 queries
Web App Attack
SQL Injection
🇩🇪
4server
2026-07-05 13:01:00
(2 months ago)
[SunJul0515:00:55.2487062026][security2:error][pid2877754:tid2877868][client45.3.51.108:0]ModSecurit ...
show more
[SunJul0515:00:55.2487062026][security2:error][pid2877754:tid2877868][client45.3.51.108:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"esengineering.ch\"][uri\"/.hg/store/\"][unique_id\"akpVh_pm5vZpzJ-sUd4SBAAAAIo\"]
show less
Port Scan
Brute-Force
Web App Attack
🇫🇮
inlink.ltd
2026-07-05 05:51:06
(2 months ago)
dot file probe
Web App Attack
🇺🇸
julianalee.com
2026-06-16 20:11:00
(2 months ago)
16/Jun/26 05:58:22 #7760756 CRITICAL 256 45.3.51.108 GET /index.php - SQL injection - [GET ...
show more
16/Jun/26 05:58:22 #7760756 CRITICAL 256 45.3.51.108 GET /index.php - SQL injection - [GET:error = ' OR '1'='1] - real-estate-daly-city-ca.com
16/Jun/26 05:58:40 #7291379 CRITICAL 1 45.3.51.108 GET /index.php - Directory traversal #1 - [GET:error = ../../../etc/passwd] - real-estate-daly-city-ca.com
show less
Hacking
SQL Injection
🇫🇷
Vaction
2026-04-27 14:30:56
(4 months ago)
45.3.51.108 - - [27/Apr/2026:16:30:56 +0200] "GET http://65.ip-51-91-111.eu/.git/HEAD HTTP/1.1" 404 ...
show more
45.3.51.108 - - [27/Apr/2026:16:30:56 +0200] "GET http://65.ip-51-91-111.eu/.git/HEAD HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36 Edg/119.0.0.0"
show less
Hacking
Bad Web Bot
Web App Attack
🇬🇧
Steve
2026-01-23 23:37:47
(7 months ago)
Repeated attempts against wordpress site
Brute-Force
Web App Attack
🇦🇺
MAGIC
2026-01-20 01:03:29
(7 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇳🇱
homeshowdomain.nl
2025-12-29 22:59:04
(8 months ago)
Auto-ban: >3000 req/min op 2025-12-29
Hacking
Web App Attack
SSH
🇺🇸
TPI-Abuse
2025-12-29 11:42:14
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 06:42:07.594609 2025] [security2:error] [pid 15288:tid 15288] [client 45.3.51.108:56419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sirreelpictures.com"] [uri "/.git/HEAD"] [unique_id "aVJpD3ZADwrZWdugHFnY_AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 10:21:50
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 05:21:43.781702 2025] [security2:error] [pid 18614:tid 18614] [client 45.3.51.108:20689] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aico-sal.com"] [uri "/.git/HEAD"] [unique_id "aVJWN-MDPO65CpwQ6FhxIgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 09:58:21
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 04:58:16.325953 2025] [security2:error] [pid 2859819:tid 2859827] [client 45.3.51.108:16707] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whitecrosslibrary.com"] [uri "/.svn/wc.db"] [unique_id "aVJQuDhnQTpvdKgcTVCqRAAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 05:29:09
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:29:04.609975 2025] [security2:error] [pid 1044:tid 1044] [client 45.3.51.108:32543] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barillaequipment.com"] [uri "/.svn/wc.db"] [unique_id "aVIRoOeTbivsPcg_fVft9AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 05:08:44
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.51.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:08:37.302283 2025] [security2:error] [pid 26301:tid 26301] [client 45.3.51.108:58675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teguer.com"] [uri "/.env"] [unique_id "aVIM1SXeHQoS1lG2dYoXsQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack