🇨🇿
lp
2026-09-15 03:22:42
(12 hours ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.135.1.80
2026-09-15T04:38:05+02:00 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.135.1.80
2026-09-15T04:38:05+02:00 vpn Access-Reject 'ftvpn' station: 45.135.1.80 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇨🇿
Countryman
2026-09-15 00:10:01
(15 hours ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
🇨🇿
lp
2026-09-14 15:22:38
(1 day ago)
Unauthorized VPN login attempts: 3 attempts were recorded from 45.135.1.80
2026-09-14T16:38:01+02:00 ...
show more
Unauthorized VPN login attempts: 3 attempts were recorded from 45.135.1.80
2026-09-14T16:38:01+02:00 vpn Access-Reject 'niebin' station: 45.135.1.80 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-14T16:39:22+02:00 vpn Access-Reject 'yanchenming' station: 45.135.1.80 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-14T16:40:48+02:00 vpn Access-Reject 'liangchengrong' station: 45.135.1.80 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇨🇿
Countryman
2026-09-14 00:10:01
(1 day ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
🇨🇿
lp
2026-09-10 01:51:18
(5 days ago)
Unauthorized VPN login attempts: 2 attempts were recorded from 45.135.1.80
2026-09-10T02:16:57+02:00 ...
show more
Unauthorized VPN login attempts: 2 attempts were recorded from 45.135.1.80
2026-09-10T02:16:57+02:00 vpn Access-Reject 'Fokker4' station: 45.135.1.80 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-10T02:18:21+02:00 vpn Access-Reject 'Fokker5' station: 45.135.1.80 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇸🇪
OnTheEdge
2026-09-09 01:28:34
(6 days ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
🇸🇪
OnTheEdge
2026-09-08 17:22:16
(6 days ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-04-09 11:21:57
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 09 07:21:48.377833 2026] [security2:error] [pid 3461400:tid 3461400] [client 45.135.1.80:45095] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gadgeteer.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gadgeteer.net"] [uri "/wp-json/wp/v2/users"] [unique_id "adeLzLmaZzKYl9Ys4hnedgAAAA0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-04-08 14:07:12
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 10:07:04.575911 2026] [security2:error] [pid 2714680:tid 2714680] [client 45.135.1.80:47269] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||georgelaceysales.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "georgelaceysales.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adZhCBlZXvnxU9yJqcYLxQAAABA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-04-03 09:13:54
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 05:13:45.298979 2026] [security2:error] [pid 32273:tid 32273] [client 45.135.1.80:36409] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||homenetserv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "homenetserv.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ac-EyZComo6Q7dvXKuwlJAAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-04-03 02:03:10
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 22:03:00.052560 2026] [security2:error] [pid 16157:tid 16157] [client 45.135.1.80:31509] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sharawi-gum.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sharawi-gum.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ac8f1KeoBU5VNJv6TOHFnAAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-03-26 19:57:50
(5 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
🇺🇸
TPI-Abuse
2026-01-06 03:42:22
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.80 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 05 22:42:14.929615 2026] [security2:error] [pid 26916:tid 26916] [client 45.135.1.80:24533] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dvdmasters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dvdmasters.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aVyElr7JKKJ6NkaKbJf7sAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
F242
2026-01-05 13:17:35
(8 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
🇨🇭
backslash
2026-01-03 19:05:06
(8 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot