π©πͺ
4server
2026-05-25 08:03:25
(1 week ago)
[MonMay2510:03:20.8319352026][security2:error][pid3798122:tid3798179][client45.3.55.141:0]ModSecurit ...
show more
[MonMay2510:03:20.8319352026][security2:error][pid3798122:tid3798179][client45.3.55.141:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"www.eimeko.ch\"][uri\"/xmlrpc.php\"][unique_id\"ahQCSCD6QY_a0kf2Hvb5mgAAAFQ\"]
show less
Port Scan
Brute-Force
Web App Attack
π¨π
backslash
2026-05-23 05:03:17
(1 week ago)
Bad Web Bot
π©πͺ
FeG Deutschland
2026-04-14 11:13:04
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
Anonymous
2026-04-01 14:35:45
(2 months ago)
Fail2ban filtered
...
Web App Attack
π¦πΊ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
π§πͺ
cmbplf
2026-03-11 05:23:25
(2 months ago)
9.117 requests with url.path */xmlrpc.php
1.813 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
π³π±
homeshowdomain.nl
2026-02-09 22:59:24
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-09
Hacking
Web App Attack
SSH
πΊπΈ
TPI-Abuse
2026-02-09 16:32:00
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 11:31:56.427004 2026] [security2:error] [pid 6283:tid 6283] [client 45.3.55.141:18273] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftwwx.com"] [uri "/frontend/.env"] [unique_id "aYoL_KTCuDxn30GDFEdYPQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-01-16 21:29:44
(4 months ago)
Multiple WAF Violations
Web App Attack
π³π±
Mangelot Hosting
2026-01-09 23:42:05
(4 months ago)
(modsecurity) srv101 ModSecurity 45.3.55.141 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Dire ...
show more
(modsecurity) srv101 ModSecurity 45.3.55.141 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
π©πͺ
barbarella
2025-11-25 08:51:33
(6 months ago)
Configuration snooping (GET /.git/HEAD)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 07:33:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:33:16.297267 2025] [security2:error] [pid 1985780:tid 1985791] [client 45.3.55.141:34087] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fiefblondel.com"] [uri "/.env"] [unique_id "aSVbvF5Zk8HeGmNZSaJOGgAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-25 06:14:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:14:51.879569 2025] [security2:error] [pid 26095:tid 26095] [client 45.3.55.141:27727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "corinthianscruise.bahamascruisersguide.com"] [uri "/.git/HEAD"] [unique_id "aSVJW7uJ1fbqk0NXpEkjigAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 08:44:27
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:44:20.071631 2025] [security2:error] [pid 31138:tid 31138] [client 45.3.55.141:21935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.main.intelligentchristianity.com.kidswow.com"] [uri "/.svn/wc.db"] [unique_id "aSQa5JLO-P1F3WGDhwiRAgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-24 07:21:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.55.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:20:39.152352 2025] [security2:error] [pid 28818:tid 28818] [client 45.3.55.141:36621] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ldnstudios.com"] [uri "/.svn/wc.db"] [unique_id "aSQHR2_08CsRC_ZknKdZ4QAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack