๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
๐ฉ๐ช
F242
2026-01-30 05:44:42
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:00:49
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-11-26 11:25:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 06:25:06.664816 2025] [security2:error] [pid 24204:tid 24204] [client 45.3.62.23:35727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lockyers.com"] [uri "/.svn/wc.db"] [unique_id "aSbjkgLhB_QMnxjr8D4LZgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 06:07:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:07:02.296056 2025] [security2:error] [pid 18703:tid 18703] [client 45.3.62.23:45753] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.homehealth101.com"] [uri "/.env"] [unique_id "aSaZBn3Ykll9WMGMATyt8gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:09:15
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:09:10.384486 2025] [security2:error] [pid 22625:tid 22625] [client 45.3.62.23:17271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.oldmaninthepeanut.com"] [uri "/.env"] [unique_id "aSZvVuX6NFZ_5oFqVokX4gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 08:31:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:31:09.465270 2025] [security2:error] [pid 3972:tid 3972] [client 45.3.62.23:40099] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.boederinteriordesign.com"] [uri "/.svn/wc.db"] [unique_id "aSQXzfIv7KiviS3eZZvWJAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:49:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:48:20.928870 2025] [security2:error] [pid 134161:tid 134198] [client 45.3.62.23:56055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rodela.com"] [uri "/.git/HEAD"] [unique_id "aSQNxBfbvyHppNR9RqJ1gwAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:11:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:11:02.756076 2025] [security2:error] [pid 10018:tid 10018] [client 45.3.62.23:22497] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.osmanhc.com"] [uri "/.env"] [unique_id "aSP29vRu5Z6QTjYV82AF1gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:53:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:53:22.625612 2025] [security2:error] [pid 3317549:tid 3317549] [client 45.3.62.23:43051] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.davesastro.com"] [uri "/.env"] [unique_id "aSPkwgJmeJaEMjjmXNuTTAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-23 18:44:00
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 13:43:47.185541 2025] [security2:error] [pid 6736:tid 6736] [client 45.3.62.23:38803] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.battlestem.com"] [uri "/.git/HEAD"] [unique_id "aSNV4_NkT80cUxZXOpmrzgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-17 20:43:51
(6 months ago)
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.11.17 is noted in report tim ...
show more
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.11.17 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-15 03:40:49
(6 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.11.15 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.11.15 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-11-09 06:32:08
(6 months ago)
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.11.09 is noted in report tim ...
show more
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.11.09 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-10-29 14:22:22
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack