๐บ๐ธ
TPI-Abuse
2026-05-15 23:43:06
(1 month ago)
(mod_security) mod_security (id:218580) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:218580) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 19:42:59.863987 2026] [security2:error] [pid 22218:tid 22218] [client 45.132.184.250:51155] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:\\\\/\\\\*[!+](?:[\\\\w\\\\s=_\\\\-()]+)?\\\\*\\\\/)" at ARGS:lang. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "76"] [id "218580"] [rev "1"] [msg "COMODO WAF: MySQL in-line comment detected.||www.genesis-castle.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agevgxoORhgyNX6xFbE-LQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-13 20:55:29
(1 month ago)
IM360 WAF: SQL Injection Attack: Common DB Names Detected
SQL Injection
๐ฎ๐น
OB-Sistemi
2026-05-07 11:56:00
(1 month ago)
Brute-Force
Exploited Host
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-03-29 03:47:06
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 28 23:47:00.118177 2026] [security2:error] [pid 11774:tid 11774] [client 45.132.184.250:10895] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||noriega.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "noriega.us"] [uri "/wp-json/wp/v2/users"] [unique_id "acigtCBzH-gLY0ePOFLzgwAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 13:12:14
(3 months ago)
(mod_security) mod_security (id:240335) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 09:12:10.970305 2026] [security2:error] [pid 29818:tid 29818] [client 45.132.184.250:45073] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.132.184.250 (+1 hits since last alert)|advantagesystemsgroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "advantagesystemsgroup.com"] [uri "/xmlrpc.php"] [unique_id "abVeqomUeIiae8znGjunDAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
SSH-Admin
2026-02-07 17:12:28
(4 months ago)
Probing for Exploits
Exploited Host
Web App Attack
๐ซ๐ท
masterguru
2026-01-07 20:19:54
(5 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.132.184.250 (US/United States/-): 1 in the ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.132.184.250 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐จ๐ฆ
SSH-Admin
2025-12-27 13:45:08
(5 months ago)
Probing for Exploits
Exploited Host
Web App Attack
๐ช๐ธ
10dencehispahard SL
2025-12-03 07:59:49
(6 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2025-11-19 11:42:22
(7 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
gu-alvareza
2025-11-12 07:05:04
(7 months ago)
WordPress.xmlrpc.Pingback.DoS
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-10-31 22:20:48
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.132.184.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 31 18:20:39.864416 2025] [security2:error] [pid 13563:tid 13563] [client 45.132.184.250:27151] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||primacomm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "primacomm.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aQU2N9j9OxTzJyNrHt0J0QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-12-29 13:35:38
(1 year ago)
apache-wordpress-login
Brute-Force
Web App Attack
๐ฌ๐ง
CrystalMaker
2021-07-23 23:56:50
(4 years ago)
Wordpress attack - GET /wp-content/plugins/translator/translator.php?l=is&u=https://ya.ru
Web App Attack
Anonymous
2021-05-28 15:45:00
(5 years ago)
Credential Stuffing
Brute-Force