๐บ๐ธ
TPI-Abuse
2026-08-28 19:46:32
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 15:46:23.452689 2026] [security2:error] [pid 14770:tid 14770] [client 45.135.1.187:43817] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||joeordie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "joeordie.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apHlj5QWVKFuf4Zk-Uj6pAAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-18 20:53:02
(1 week ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 20:24:04
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 16:23:56.623656 2026] [security2:error] [pid 22822:tid 22822] [client 45.135.1.187:58787] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||randeen.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "randeen.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoS_XN7MOEWSS7LNLoAoIwAAABk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-08-17 19:58:34
(1 week ago)
Web password guessing
Brute-Force
๐ฎ๐น
VHosting
2026-08-16 17:10:05
(2 weeks ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 14:41:07
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 10:41:00.657846 2026] [security2:error] [pid 14753:tid 14753] [client 45.135.1.187:39753] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigkevsperformance.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigkevsperformance.com"] [uri "/wp-json/wp/v2/users"] [unique_id "an3XfLXU4XHlxKS6x-iOiAAAACM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-08-06 23:33:09
(3 weeks ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-06 23:00:02
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 18:59:51.381569 2026] [security2:error] [pid 1197157:tid 1197157] [client 45.135.1.187:63963] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||billthompsons.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "billthompsons.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anUR5yNfvfr--0LldoQabgAAABI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-06 19:44:02
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.187 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 15:43:56.158079 2026] [security2:error] [pid 2063975:tid 2063975] [client 45.135.1.187:62191] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||socialstudiesforkids.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "socialstudiesforkids.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anTj_AU2d4wRNeJfBD70gAAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-03 05:15:28
(4 weeks ago)
Multiple WAF Violations
Web App Attack
๐ฌ๐ง
consul.to
2026-07-27 18:46:29
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ฎ
stinpriza
2026-07-07 23:38:24
(1 month ago)
Web App Attack
Web App Attack
๐ฎ๐น
[email protected]
2026-07-07 10:09:56
(1 month ago)
2026-07-07 12:09:53,764 fail2ban.actions [4115713]: NOTICE [apache-auth] Ban 45.135.1.187202 ...
show more
2026-07-07 12:09:53,764 fail2ban.actions [4115713]: NOTICE [apache-auth] Ban 45.135.1.1872026-07-07 12:09:54,009 fail2ban.actions [4115713]: NOTICE [wordpress] Ban 45.135.1.187
show less
Brute-Force
๐ซ๐ท
Tilellit.PRO
2026-07-05 04:10:54
(1 month ago)
WP Armour Plugin detection
Web Spam
Brute-Force
๐ฎ๐น
Inartis
2026-07-02 13:53:30
(1 month ago)
45.135.1.187 - - [02/Jul/2026:15:53:29 +0200] "POST /xmlrpc.php HTTP/1.1" 403 5228 "-" "Mozilla/5.0 ...
show more
45.135.1.187 - - [02/Jul/2026:15:53:29 +0200] "POST /xmlrpc.php HTTP/1.1" 403 5228 "-" "Mozilla/5.0 (Linux; Android 4.4.2; SM-T230) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.138 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack