๐ฒ๐ฝ
octageeks.com
2026-08-31 04:21:31
(1 hour ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-03-24 13:00:45
(5 months ago)
CRITICAL: Persistent attacker 175.158.45.160 - 10 attempts in 30 minutes. Threat Score: 7.6/10 (HIGH ...
show more
CRITICAL: Persistent attacker 175.158.45.160 - 10 attempts in 30 minutes. Threat Score: 7.6/10 (HIGH). Confidence: 60%. CVSS v3.1: 7.3/10 (High). CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 87%. MITRE ATT&CK: T1071 (Application Layer Protocol). Tactic: TA0001. Freshness: Moderate. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-03-24 09:00:36
(5 months ago)
CRITICAL: Persistent attacker 175.158.45.160 - 10 attempts in 30 minutes. Threat Score: 7.7/10 (HIGH ...
show more
CRITICAL: Persistent attacker 175.158.45.160 - 10 attempts in 30 minutes. Threat Score: 7.7/10 (HIGH). Confidence: 60%. CVSS v3.1: 7.3/10 (High). CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L. Bayesian Probability: 87%. MITRE ATT&CK: T1071 (Application Layer Protocol). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT. Status: MALICIOUS
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-03-24 07:53:57
(5 months ago)
[WAZUH] CRITICAL: Persistent attacker 175.158.45.160 - 10 attempts in 30 minutes
Hacking
Web App Attack
๐ฎ๐น
VHosting
2026-01-26 12:21:04
(7 months ago)
Detected mail brute force attack from 4 different servers
Brute-Force
๐จ๐ณ
ThreatBook.io
2025-12-28 22:30:44
(8 months ago)
ThreatBook Intelligence: Zombie,vpn_proxy more details on https://threatbook.io/ip/175.158.45.160
SSH
๐จ๐ณ
ThreatBook.io
2025-12-26 22:35:08
(8 months ago)
ThreatBook Intelligence: Zombie,vpn_proxy more details on https://threatbook.io/ip/175.158.45.160
Brute-Force
๐ฎ๐น
VHosting
2025-12-01 17:32:17
(8 months ago)
Detected mail brute force attack from 4 different servers
Brute-Force
๐ฒ๐พ
syokadmin
2025-10-28 01:47:54
(10 months ago)
175.158.45.160 (ID/Indonesia/ip-175-158-45-160.cbn.net.id), 5 distributed SMTP Logins on account [ac ...
show more
175.158.45.160 (ID/Indonesia/ip-175-158-45-160.cbn.net.id), 5 distributed SMTP Logins on account [[email protected] ] in the last 300 secs
show less
Email Spam
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-09-20 17:56:53
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 175.158.45.160 (ip-175-158-45-160.cbn.net.id): ...
show more
(mod_security) mod_security (id:225170) triggered by 175.158.45.160 (ip-175-158-45-160.cbn.net.id): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 20 13:56:49.835140 2025] [security2:error] [pid 3844963:tid 3844989] [client 175.158.45.160:54618] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||reghay.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "reghay.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aM7q4dSvYs5KgLWkXMHAiAAAARc"], referer: https://reghay.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-06-04 13:24:26
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
kosada.com
2025-05-14 07:37:39
(1 year ago)
Web vulnerability probing
Web App Attack
๐จ๐ฟ
unhfree.net
2025-04-03 23:46:56
(1 year ago)
Apr 3 22:47:44 canopus postfix/smtpd[3492918]: NOQUEUE: reject: RCPT from unknown[175.158.45.160]: ...
show more
Apr 3 22:47:44 canopus postfix/smtpd[3492918]: NOQUEUE: reject: RCPT from unknown[175.158.45.160]: 554 5.7.1 <[email protected] >: Recipient address rejected: Maximum 20 messages per 60 minutes limit reached; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<localhost>
Apr 3 22:47:44 canopus postfix/smtpd[3492918]: too many errors after RCPT from unknown[175.158.45.160]
Apr 4 01:02:58 canopus postfix/smtpd[3510108]: NOQUEUE: reject: RCPT from unknown[175.158.45.160]: 554 5.7.1 <[email protected] >: Recipient address rejected: Maximum 20 messages per 60 minutes limit reached; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<localhost>
Apr 4 01:02:58 canopus postfix/smtpd[3510108]: too many errors after RCPT from unknown[175.158.45.160]
Apr 4 01:46:56 canopus postfix/smtpd[3509980]: NOQUEUE: reject: RCPT from unknown[175.158.45.160]: 554 5.7.1 <[email protected] >: Recipient address rejected: Maximum 20 messages
...
show less
Brute-Force
Exploited Host
๐ฉ๐ช
rh24
2025-04-01 06:22:34
(1 year ago)
(contact-forms) Failed contact-forms trigger with match [redacted] from 175.158.45.160 (ID/Indonesia ...
show more
(contact-forms) Failed contact-forms trigger with match [redacted] from 175.158.45.160 (ID/Indonesia/ip-175-158-45-160.cbn.net.id): (CF_ENABLE)
show less
Hacking
Anonymous
2025-03-28 03:10:24
(1 year ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.03.28 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.03.28 is noted in report timestamp
show less
Hacking
Brute-Force