๐ช๐ธ
elcruzado.es
2026-05-18 11:26:32
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 45.45.237.214 (US/United States/-)
SQL Injection
๐ฟ๐ฆ
Tokolosh Hunters
2026-05-18 08:16:44
(2 weeks ago)
AutoBlockWindow-Known bad useragent query-2026-05-18 08:16:41
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-18 07:18:32
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 03:18:27.497645 2026] [security2:error] [pid 20576:tid 20576] [client 45.45.237.214:57356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yerevanpress.am"] [uri "/.git/HEAD"] [unique_id "agq9Q-bKwACTxmW7Lq5Y6wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
dominioz
2026-05-18 06:28:02
(2 weeks ago)
2026-05-18 06:27:47 GET /.env.backup - - 45.45.237.214 HTTP/1.1 Mozilla/5.0+(compatible;+ClaudeBot/1 ...
show more
2026-05-18 06:27:47 GET /.env.backup - - 45.45.237.214 HTTP/1.1 Mozilla/5.0+(compatible;+ClaudeBot/1.0;[email protected] ) - 404 1440
2026-05-18 06:27:47 GET /.env.production - - 45.45.237.214 HTTP/1.1 Mozilla/5.0+(compatible;+ClaudeBot/1.0;[email protected] ) - 404 1440
2026-05-18 06:27:47 GET /secrets.json - - 45.45.237.214 HTTP/1.1 Mozilla/5.0+(compatible;+Baiduspider/2.0;++http://www.baidu.com/search/spider.html) - 404 1440
2026-05-18 06:27:47 GET /.env.local - - 45.45.237.214 HTTP/1.1 Mozilla/5.0+(compatible;+PerplexityBot/1.0;++https://perplexity.ai/perplexitybot) - 404 1440
...
show less
Web App Attack
๐ซ๐ท
omartin
2026-05-18 05:09:53
(2 weeks ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
Axel
2026-05-18 04:10:01
(2 weeks ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-05-18 04:02:16
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 00:02:10.319828 2026] [security2:error] [pid 30449:tid 30449] [client 45.45.237.214:51308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lambert-heating-and-air.com"] [uri "/.git/config"] [unique_id "agqPQiEdahdwxZcnv0JF_AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-05-18 03:29:38
(2 weeks ago)
109 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-18 02:36:44
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 22:36:36.886993 2026] [security2:error] [pid 9327:tid 9327] [client 45.45.237.214:50716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eftekharschool.ir"] [uri "/.git/config"] [unique_id "agp7NNVqana6pIsDs_cnNAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-05-18 01:13:18
(2 weeks ago)
BAD BOT - Detected and Blocked.. Matched phrase "baidu" at REQUEST_HEADERS:User-Agent. (1100000-195)
Bad Web Bot
๐ซ๐ท
ELYAZ
2026-05-18 00:34:25
(2 weeks ago)
(y3) Failed access -byebye- from 45.45.237.214 (US/United States/-): (CF_ENABLE)
Hacking
Anonymous
2026-05-18 00:24:57
(2 weeks ago)
(caddyscan) Scanner path probe from 45.45.237.214 (US/United States/-): 5 in the last 3600 secs; Por ...
show more
(caddyscan) Scanner path probe from 45.45.237.214 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 45.45.237.214 - - [18/May/2026:00:24:56 +0000] "GET /.git/HEAD HTTP/1.1"
[REDACTED] 200 2627 45.45.237.214 - - [18/May/2026:00:24:56 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 45.45.237.214 - - [18/May/2026:00:24:56 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 45.45.237.214 - - [18/May/2026:00:24:56 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 45.45.237.214 - - [18/May/2026:00:24:56 +0000] "GET /.env.bak HTTP/1.1"
show less
Port Scan
๐ซ๐ฎ
stinpriza
2026-05-18 00:03:28
(2 weeks ago)
Web App Attack
Web App Attack
๐ฉ๐ช
raph
2026-05-17 21:58:16
(2 weeks ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 21:45:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.45.237.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 17:45:54.063615 2026] [security2:error] [pid 27066:tid 27066] [client 45.45.237.214:33070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jogmabogadospenalistas.com"] [uri "/.git/config"] [unique_id "ago3EjWT-l3HV2kyjqLRgQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack