Anonymous
2026-04-09 10:15:36
(2 months ago)
2026-04-09T12:15:35.664213+02:00 zanati wp(sahpa.co.za)[487766]: Blocked authentication attempt for ...
show more
2026-04-09T12:15:35.664213+02:00 zanati wp(sahpa.co.za)[487766]: Blocked authentication attempt for LisaNcube from 45.132.184.42
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 10:53:08
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 06:52:55.368264 2026] [security2:error] [pid 22899:tid 22899] [client 45.132.184.42:48827] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.csm-dtc.com"] [uri "/wp-config.php.txt"] [unique_id "acJtBwt28G6W4R-he1irkAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-06 08:02:57
(5 months ago)
Malicious activity detected
Hacking
Web App Attack
๐ธ๐ฌ
Vano Ganzzz
2025-11-29 11:10:21
(7 months ago)
Triggered Cloudflare WAF (ratelimit) from US.
Action taken: BLOCK
ASN: 26548 (PUREVOLTAGE-INC)
Proto ...
show more
Triggered Cloudflare WAF (ratelimit) from US.
Action taken: BLOCK
ASN: 26548 (PUREVOLTAGE-INC)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2025-11-29T11:10:21Z
Ray ID: 9a61a8755bd85e61
UA: Mozilla/5.0 (iPad; CPU OS 17_0 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/131.0.0.0 Mobile/15E148 Safari/604.1
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-03-22 14:07:15
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 22 10:07:10.669790 2025] [security2:error] [pid 11246:tid 11246] [client 45.132.184.42:23917] [client 45.132.184.42] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||balloonworldohio.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "balloonworldohio.com"] [uri "/wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [unique_id "Z97EDrtLgsT8deqbBGwMoAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-17 08:05:41
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 17 04:05:37.718522 2025] [security2:error] [pid 10297:tid 10297] [client 45.132.184.42:22277] [client 45.132.184.42] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||applemaccomputerconsulting.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "applemaccomputerconsulting.com"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z9fX0eJE3fWAPmEZt_8GDwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-13 05:54:41
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 13 01:54:35.205666 2025] [security2:error] [pid 12968:tid 12968] [client 45.132.184.42:59593] [client 45.132.184.42] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||alaskadreamspublishing.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alaskadreamspublishing.com"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z9JzG4RbiD_PxQmCrO_7JgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-12 08:52:51
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 12 04:52:44.519901 2025] [security2:error] [pid 16070:tid 16070] [client 45.132.184.42:12811] [client 45.132.184.42] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||ahsigns.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ahsigns.com"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z9FLXOCA1kSU4gjXZp8PTAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-10 02:20:05
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 22:19:58.594945 2025] [security2:error] [pid 15199:tid 15211] [client 45.132.184.42:48343] [client 45.132.184.42] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||abusaimeh.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/wp-super-cache/js/cache-loader.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abusaimeh.com"] [uri "/wp-content/plugins/wp-super-cache/js/cache-loader.php"] [unique_id "Z85MTtOjuthPkvEYDJFTqwAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2025-03-08 05:14:55
(1 year ago)
Wordpress malicious attack:[octascan]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-27 23:23:21
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.132.184.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 27 18:23:16.523171 2025] [security2:error] [pid 22732:tid 22732] [client 45.132.184.42:56743] [client 45.132.184.42] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||www.sail.aegeanpassion.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/canto/includes/lib/download.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sail.aegeanpassion.com"] [uri "/wp-content/plugins/canto/includes/lib/download.php"] [unique_id "Z8Dz5Oto40JkK46oFUfz5QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ผ
nansen su
2024-08-09 10:05:01
(1 year ago)
Firewall Web Interface Login fail: remip="45.132.184.42" user=admin
Brute-Force
Exploited Host
๐ต๐ฑ
TI
2023-11-01 01:02:47
(2 years ago)
Scrapping website, using diffrent useragents, not wait for response, #botnet20231026
DDoS Attack
Bad Web Bot
๐ฒ๐พ
syokadmin
2022-07-29 21:49:51
(3 years ago)
(cpanel) Failed cPanel login from 45.132.184.42 (DE/Germany/-): 1 in the last 3600 secs
Brute-Force
Web App Attack
๐ฉ๐ช
ps-center
2021-08-11 05:37:31
(4 years ago)
SS5,Magento Bruteforce Login Attack POST /index.php/admin/
Web Spam
Bad Web Bot
Web App Attack