๐ฑ๐ป
garmtech.com
2026-05-05 02:37:52
(1 month ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 05-37.45.3.54.109.web-spammers ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 05-37.45.3.54.109.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-02-14 03:22:23
(3 months ago)
IM360 WAF: Old style account creation and modification in Joomla! MV:registration
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 09:17:18
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 04:17:13.606834 2026] [security2:error] [pid 2094:tid 2094] [client 45.3.54.109:27353] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "langkawi-boat-registration.com"] [uri "/dev/.git/config"] [unique_id "aY7sGYM_ZvnXH8k7Jq2i6QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-13 07:22:01
(3 months ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1, GET /new/.git/config HTTP/1.1, GE ...
show more
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1, GET /new/.git/config HTTP/1.1, GET /frontend/.env HTTP/1.1, GET /app/.git/config HTTP/1.1, GET /config/.env HTTP/1.1, GET /.env.staging HTTP/1.1, GET /site/.git/config HTTP/1.1, GET /test/.git/config HTTP/1.1, GET /admin/.git/config HTTP/1.1, GET /wp/.git/config HTTP/1.1, GET /.aws/credentials HTTP/1.1, GET /api/.git/config HTTP/1.1, GET /.env.local HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 06:29:42
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 01:29:37.223371 2026] [security2:error] [pid 27571:tid 27571] [client 45.3.54.109:32255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "krakenseattle.org"] [uri "/frontend/.env"] [unique_id "aY7E0eaZ6cAlFraZFwWwUQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-13 06:05:58
(3 months ago)
Too many Status 40X (12)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 02:35:39
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 21:35:34.081683 2026] [security2:error] [pid 8743:tid 8743] [client 45.3.54.109:38639] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kengarysp.com"] [uri "/.env"] [unique_id "aY6N9oO6YroPe396ctoGcQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 02:13:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 21:12:54.773018 2026] [security2:error] [pid 5288:tid 5288] [client 45.3.54.109:29533] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keeftone.com"] [uri "/.env.save"] [unique_id "aY6Ipk6bXGzjfLlUqbpAkAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 19:46:40
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 14:46:34.791584 2026] [security2:error] [pid 27772:tid 27800] [client 45.3.54.109:32839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frmoto.com"] [uri "/.git/config"] [unique_id "aY4uGqOeAAogPq0yRfjc8AAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 18:21:00
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 13:20:55.959453 2026] [security2:error] [pid 778:tid 778] [client 45.3.54.109:38769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "claireashton.com"] [uri "/.git/config"] [unique_id "aY4aB3KwWDq3m5_6hKPKlwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 14:38:41
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 09:38:37.293240 2026] [security2:error] [pid 26702:tid 26702] [client 45.3.54.109:50977] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "armrms.com"] [uri "/.git/config"] [unique_id "aY3l7agiIEGzk2PHocgCEgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-11 22:59:07
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-11
Hacking
Web App Attack
SSH
๐ฉ๐ช
Carsten
2026-02-11 00:14:07
(3 months ago)
GET [app/.env]
Port Scan
๐ฉ๐ช
ps-center
2026-02-10 15:48:40
(3 months ago)
C1: Web Attack GET /admin/.env
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 06:24:19
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.109 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:24:13.904974 2026] [security2:error] [pid 12388:tid 12388] [client 45.3.54.109:23835] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ggisoft.com"] [uri "/v2/.git/config"] [unique_id "aYrPDRDR9FhI34u2N2-pAwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack