This IP address has been reported a total of
9
times from
8 distinct
sources.
45.3.54.130 was first reported on
October 1st 2024 , and the most recent report was
47 minutes ago .
In the last 60 days, the top reporter locations were:
Poland
with 1
report;
Sweden
with 1
report.
The most common categories in these recent reports were:
Web App Attack
2
times;
Hacking
1
time;
Bad Web Bot
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ต๐ฑ
Budyn
2026-10-10 03:52:46
(47 minutes ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: app.budyn.top | URI: /.env.json | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-03 11:51:17
(1 month ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ซ๐ท
Sklurk
2026-08-09 01:38:00
(2 months ago)
Web App Attack
Web App Attack
Anonymous
2026-04-17 04:32:59
(5 months ago)
Banned by SPAMHAUS ASN-DROP list (ASN: 200373)
DDoS Attack
Hacking
Bad Web Bot
Web App Attack
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(6 months ago)
"DDoS against public endpoint"
DDoS Attack
๐ต๐ฑ
sefinek.net
2025-12-25 06:53:19
(9 months ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-11-24 07:44:46
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.130 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:44:40.604234 2025] [security2:error] [pid 15383:tid 15383] [client 45.3.54.130:22879] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.strawusa.com"] [uri "/.svn/wc.db"] [unique_id "aSQM6HR4Xka1K28DwFBulgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:49:26
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.130 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:49:09.936869 2025] [security2:error] [pid 12125:tid 12125] [client 45.3.54.130:45705] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.comobarbershop.com"] [uri "/.svn/wc.db"] [unique_id "aSPjxYPULV4Dhkxj1HzKiAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-10-01 01:45:16
(2 years ago)
Trawling for Open Source CMS installs
Hacking
Brute-Force
Showing 1 to
9
of 9 reports