๐บ๐ธ
TPI-Abuse
2026-08-05 16:38:46
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 05 12:38:38.987644 2026] [security2:error] [pid 14084:tid 14084] [client 45.157.112.68:51057] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fletcherdouglas.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fletcherdouglas.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anNnDqam_zvLT_OKZW0ZHwAAAAM"], referer: https://www.bing.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
abdubhai
2026-08-03 10:21:44
(2 weeks ago)
45.157.112.68 - - [03/Aug/2026:1
...
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-02 08:06:14
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 02 04:06:05.904274 2026] [security2:error] [pid 754038:tid 754038] [client 45.157.112.68:55799] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jacquelineperriam.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jacquelineperriam.com"] [uri "/wp-json/wp/v2/users"] [unique_id "am76bW5VdMT-g2MR5250ggAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-31 19:35:42
(2 weeks ago)
Multiple unauthorized connection attempts
Web App Attack
๐ง๐ช
voormedia
2026-07-30 23:03:44
(2 weeks ago)
Accessed trap at '/wp-login.php'
Web App Attack
๐จ๐ญ
backslash
2026-07-28 12:36:00
(3 weeks ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-28 12:21:09
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 08:21:01.374353 2026] [security2:error] [pid 1639094:tid 1639094] [client 45.157.112.68:30187] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||goglobex.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "goglobex.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amierX4m5-DpAgLmf9R16AAAAAc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-07-12 23:34:56
(1 month ago)
536 requests with user_agent.original Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.2.1) Gecko/20021 ...
show more
536 requests with user_agent.original Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.2.1) Gecko/20021208 Debian/1.2.1-2
490 requests with user_agent.original Mozilla/5.0 (X11; U; Linux i586; en-US; rv:1.0.0) Gecko/20020623 Debian/1.0.0-0.woody.1
489 requests with user_agent.original Mozilla/5.0 (iPhone; CPU iPhone OS 15_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/19G82 Instagram 306.0.0.20.118 (iPhone12,1; iOS 15_6_1; en_GB; en; scale=2.00; 828x1792; 529083166) NW/3
482 requests with user_agent.original Mozilla/5.0 (iPhone; CPU iPhone OS 16_1_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/15E148 [LinkedInApp]/9.28.7586
470 requests with user_agent.original Mozilla/5.0 (Macintosh; U; PPC Mac OS X Mach-O; en-US; rv:1.7.6) Gecko/20050319
460 requests with user_agent.original AppleCoreMedia/1.0.0.23A344 (Macintosh; U; Intel Mac OS X 14_0; da_dk)
460 requests with user_agent.original Mozilla/5.0 (Macintosh; U; PPC; en-US; rv:0.9.3) Gecko/20010802
450 requests with use
show less
Brute-Force
Bad Web Bot
๐ฌ๐ง
consul.to
2026-07-06 00:02:48
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
raph
2026-06-29 01:05:43
(1 month ago)
[Wordpress] crawler /wp-admin/*, /wp-content/*, etc.
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-27 20:50:12
(1 month ago)
(wplogin_block) Blocked WP-Login Access Attempt 45.157.112.68 (FR/France/Paris Department/Paris/-/[A ...
show more
(wplogin_block) Blocked WP-Login Access Attempt 45.157.112.68 (FR/France/Paris Department/Paris/-/[AS206092 F.n.s. Holdings Limited]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: 45.157.112.68 - - [27/Jun/2026:23:50:04 +0300] "GET /wp-login.php HTTP/1.1" 200 5048 "https://t.co/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
show less
Port Scan
๐ฆ๐บ
screwlooseit.com.au
2026-06-18 06:16:39
(2 months ago)
Blocked by CSF 13 firewall - Rule: WPLOGIN
US/United States/-
Web App Attack
๐บ๐ธ
factor1
2026-06-15 11:43:35
(2 months ago)
Fail2ban at churndash Reports Abuse.
Brute-Force
Web App Attack
๐ณ๐ฑ
ParaBug
2026-06-15 03:36:13
(2 months ago)
45.157.112.68 - - [15/Jun/2026:05:36:12 +0200] "POST /index.php?s=captcha&xz=-1 HTTP/1.1" 301 3214 " ...
show more
45.157.112.68 - - [15/Jun/2026:05:36:12 +0200] "POST /index.php?s=captcha&xz=-1 HTTP/1.1" 301 3214 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64; rv:48.0) Gecko/20100101 Firefox/48.0"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 03:41:28
(2 months ago)
(mod_security) mod_security (id:210580) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210580) triggered by 45.157.112.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 23:41:23.010174 2026] [security2:error] [pid 6909:tid 6909] [client 45.157.112.68:37613] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "etc/passwd" at ARGS:log_filename. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "57"] [id "210580"] [rev "2"] [msg "COMODO WAF: OS File Access Attempt||sporttaekwondo.net|F|2"] [data "Matched Data: etc/passwd found within ARGS:log_filename: ../../../../../../../../../../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "sporttaekwondo.net"] [uri "/wp-admin/admin-ajax.php"] [unique_id "ai4i4oWqmL1OLPdLCbOm9wAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack