|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 45.157.112.91 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 02 10:21:02.925683 2026] [security2:error] [pid 3300418:tid 3300418] [client 45.157.112.91:43585] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||renjunews.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "renjunews.com"] [uri "/wp-json/wp/v2/users"] [unique_id "am9STvy-mpOpjS-X4NRzpAAAAAw"], referer: https://wordpress.org/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 45.157.112.91 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 13:27:28.417509 2026] [security2:error] [pid 1769:tid 1769] [client 45.157.112.91:48669] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||arapi.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "arapi.org"] [uri "/wp-json/wp/v2/users"] [unique_id "amzbAHgVR2TC3GkscSQzZQAAAB8"], referer: https://www.bing.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐จ๐ญ
backslash
|
|
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
|
Bad Web Bot
|
|
|
๐ซ๐ท
dynamix
|
|
WordPress wp-login.php Brute Force Attack
|
Brute-Force
Web App Attack
|
|
|
๐ท๐ด
iulianh
|
|
25,465,587
|
Brute-Force
SSH
|
|
|
๐บ๐ธ
bigscoots.com
|
|
(smtpauth) Failed SMTP AUTH login from 45.157.112.91 (FR/France/-): 5 in the last 3600 secs; Ports: ...
show more
(smtpauth) Failed SMTP AUTH login from 45.157.112.91 (FR/France/-): 5 in the last 3600 secs; Ports: 25,465,587; Direction: 0; Trigger: LF_SMTPAUTH; Logs: 2026-07-29 18:08:24 dovecot_plain authenticator failed for H=([10.87.0.191]) [45.157.112.91]:51271: 535 Incorrect authentication data ([email protected])
2026-07-29 18:08:30 dovecot_login authenticator failed for H=([10.87.0.191]) [45.157.112.91]:51271: 535 Incorrect authentication data ([email protected])
2026-07-29 18:38:35 dovecot_plain authenticator failed for H=([10.87.0.191]) [45.157.112.91]:38517: 535 Incorrect authentication data ([email protected])
2026-07-29 18:38:41 dovecot_login authenticator failed for H=([10.87.0.191]) [45.157.112.91]:38517: 535 Incorrect authentication data ([email protected])
2026-07-29 18:38:50 dovecot_plain authenticator failed for H=([10.87.0.191]) [45.157.112.91]:19654: 535 Incorrect authentication data ([email protected])
show less
|
Brute-Force
SSH
|
|
|
๐บ๐ธ
kosada.com
|
|
Web bot: denial-of-service flood
|
DDoS Attack
Bad Web Bot
|
|
|
๐ซ๐ฎ
bittiguru.fi
|
|
45.157.112.91 - - \[02/Jul/2026:02:51:24 +0300\] "POST /wp-login.php HTTP/1.1" 404 162 "https://ekco ...
show more
45.157.112.91 - - \[02/Jul/2026:02:51:24 +0300\] "POST /wp-login.php HTTP/1.1" 404 162 "https://ekcos.fi/wp-login.php" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 13_6_1\; rv:118.0\) Gecko/20100101 Firefox/118.0" "-"
45.157.112.91 - - \[02/Jul/2026:02:51:26 +0300\] "POST /wp-login.php HTTP/1.1" 404 191 "https://ekcos.fi/wp-login.php" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/119.0.0.0 Safari/537.36" "3.13"
45.157.112.91 - - \[02/Jul/2026:02:51:29 +0300\] "POST /wp-login.php HTTP/1.1" 404 191 "https://ekcos.fi/wp-login.php" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/121.0.0.0 Safari/537.36" "3.13"
45.157.112.91 - - \[02/Jul/2026:02:51:32 +0300\] "POST /wp-login.php HTTP/1.1" 404 191 "https://ekcos.fi/wp-login.php" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/120.0.0.0 Safari/537.36" "3.13"
45.157.112.91 - - \[02/Jul/2026:02:51:35 +0300\] "POST /wp-login
...
show less
|
Hacking
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
nyt
|
|
Brute-Force, Web App Attack, 503 on login page
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
45.157.112.91 - - [01/Jul/2026:20:11:11 +0300] "GET /wp-login.php HTTP/1.1" 404 3369 "https://t.co/" ...
show more
45.157.112.91 - - [01/Jul/2026:20:11:11 +0300] "GET /wp-login.php HTTP/1.1" 404 3369 "https://t.co/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.0.0 Safari/537.36"
45.157.112.91 - - [01/Jul/2026:20:11:14 +0300] "GET /wp-admin/ HTTP/1.1" 404 705 "https://www.google.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 45.157.112.91 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.91 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 30 21:17:41.518698 2026] [security2:error] [pid 23298:tid 23298] [client 45.157.112.91:27597] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thepinman.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thepinman.org"] [uri "/wp-json/wp/v2/users"] [unique_id "akRqtRdctvZBaD4AqGbmkwAAAAo"], referer: https://wordpress.org/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฌ๐ง
Greg Poulson
|
|
Our website was hit by this DDOS at a rate of 21 in 5 minutes.
|
DDoS Attack
Web Spam
Brute-Force
|
|
|
Anonymous
|
|
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-login.php
|
Web App Attack
|
|
|
๐บ๐ฆ
URAN Publishing Service
|
|
45.157.112.91 - - [26/Jun/2026:05:21:19 +0300] "GET /wp-admin/index.php HTTP/1.1" 404 218 "https://r ...
show more
45.157.112.91 - - [26/Jun/2026:05:21:19 +0300] "GET /wp-admin/index.php HTTP/1.1" 404 218 "https://rtpsas.rtf.kpi.ua/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
45.157.112.91 - - [26/Jun/2026:05:21:26 +0300] "GET /wp-admin/profile.php HTTP/1.1" 404 2799 "https://rtpsas.rtf.kpi.ua/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 13_6_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
|
Web App Attack
|
|
|
๐ซ๐ท
Kenshin869
|
|
Wordpress unauthorized access attempt
|
Brute-Force
|
|