πΊπΈ
TPI-Abuse
2026-06-08 06:35:12
(2 days ago)
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 ...
show more
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 02:35:07.084208 2026] [security2:error] [pid 24829:tid 24829] [client 145.102.244.246:58192] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 145.102.244.246 (+1 hits since last alert)|eftekharschool.ir|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "eftekharschool.ir"] [uri "/xmlrpc.php"] [unique_id "aiZimzoTUz80gs5sdOkgOQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π²πΎ
Rizzy
2026-06-08 06:26:13
(2 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
π²πΎ
Rizzy
2026-06-05 10:15:47
(5 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-05 09:14:33
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 ...
show more
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 05:14:25.746406 2026] [security2:error] [pid 21488:tid 21488] [client 145.102.244.246:55491] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 145.102.244.246 (+1 hits since last alert)|medusakenya.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "medusakenya.com"] [uri "/xmlrpc.php"] [unique_id "aiKTcShbEReChrNWqnWBwQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-05 07:24:28
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 ...
show more
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 03:24:21.958832 2026] [security2:error] [pid 30539:tid 30563] [client 145.102.244.246:50564] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 145.102.244.246 (+1 hits since last alert)|frannykingsmith.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "frannykingsmith.com"] [uri "/xmlrpc.php"] [unique_id "aiJ5pT-rIbztS9DxUBiXjwAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-05 07:00:35
(5 days ago)
[05/Jun/2026:07:00:35 +0000] host=lovelyrender.app server=lovelyrender.app ip=145.102.244.246 method ...
show more
[05/Jun/2026:07:00:35 +0000] host=lovelyrender.app server=lovelyrender.app ip=145.102.244.246 method=POST req=/xmlrpc.php uri=/index.php status=302 bytes=5 rt=0.057 urt=0.056 ref="-" ua="WordPress.com; https://wordpress.com"
...
show less
Web App Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-06-05 06:37:05
(5 days ago)
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 ...
show more
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 02:36:58.831133 2026] [security2:error] [pid 17026:tid 17026] [client 145.102.244.246:53499] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 145.102.244.246 (+1 hits since last alert)|concentricsteel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "concentricsteel.com"] [uri "/xmlrpc.php"] [unique_id "aiJuihsKBc6BVL7LFq35bwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
integrantservices.com
2026-06-04 12:27:15
(6 days ago)
(wordpress) Failed wordpress login from 145.102.244.246 (UNASSIGNED)
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-04 07:42:42
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 ...
show more
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 03:42:36.575218 2026] [security2:error] [pid 3122:tid 3122] [client 145.102.244.246:61200] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 145.102.244.246 (+1 hits since last alert)|technesa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "technesa.com"] [uri "/xmlrpc.php"] [unique_id "aiEsbJE1XwI1l4av8KXjDgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 07:31:57
(2 weeks ago)
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 ...
show more
(mod_security) mod_security (id:240335) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 03:31:53.892604 2026] [security2:error] [pid 32251:tid 32251] [client 145.102.244.246:61819] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 145.102.244.246 (+1 hits since last alert)|maffiniandbearce.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "maffiniandbearce.com"] [uri "/xmlrpc.php"] [unique_id "ahAGaQPN8dPd1kwQmyDBVwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-21 09:05:14
(2 weeks ago)
Attac
Brute-Force
Anonymous
2026-05-20 06:47:21
(3 weeks ago)
Attac
Brute-Force
Anonymous
2026-05-19 11:24:29
(3 weeks ago)
(wordpress) Failed wordpress login from 145.102.244.246 (UNASSIGNED)
Brute-Force
πΊπΈ
factor1
2026-05-18 13:19:26
(3 weeks ago)
Fail2ban at churndash Reports Abuse.
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-18 09:54:16
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 145.102.244.246 (UNASSIGNED): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 05:54:10.248069 2026] [security2:error] [pid 4775:tid 4775] [client 145.102.244.246:50882] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lacycustombuilt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lacycustombuilt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agrhwjbDOX2HJzWrNghH8AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack