|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:43:35.890114 2026] [security2:error] [pid 30006:tid 30006] [client 45.141.128.112:52201] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barigby.com"] [uri "/wp-config.php.dist"] [unique_id "ahBdh8cxgrCJQs2cVwTijgAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 17:21:48.435916 2026] [security2:error] [pid 20115:tid 20115] [client 45.141.128.112:38325] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bosdkbook.com"] [uri "/wp-config.php.bak"] [unique_id "ag4l7GimZoaO56vQ2gcy_gAAAAs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 12:39:41.158618 2026] [security2:error] [pid 4041:tid 4058] [client 45.141.128.112:22593] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.willmanlawfirm.com"] [uri "/wp-config.php.save"] [unique_id "ag3jzVyds1s1b4JiXjmQBwAAAEw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 07:51:12.550731 2026] [security2:error] [pid 10035:tid 10035] [client 45.141.128.112:62049] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.bak" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qed-consulting.co"] [uri "/wp-config.bak"] [unique_id "ag2gMOdEsFRTZrZOrEAHQQAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:211030) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:211030) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 16:05:21.198247 2026] [security2:error] [pid 27260:tid 27260] [client 45.141.128.112:48271] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at ARGS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "17"] [id "211030"] [rev "3"] [msg "COMODO WAF: LDAP Injection Attack||www.genesis-castle.com|F|2"] [data "Matched Data: ('~'||( found within ARGS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agTZgW2YzhQ71QTS8pTqYwAAADI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฎ๐ฉ
zam
|
|
45.141.128.112 - - [12/May/2026:03:13:57 +0000] "POST /xmlrpc.php HTTP/1.1" 500 320
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 03:19:21.972691 2026] [security2:error] [pid 31724:tid 31724] [client 45.141.128.112:37697] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||phalanxemail.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "phalanxemail.net"] [uri "/wp-json/wp/v2/users"] [unique_id "afGw-aHH991gerAWzVeMlwAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 19:24:53.280575 2026] [security2:error] [pid 27864:tid 27864] [client 45.141.128.112:65013] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||desdier.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "desdier.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ae6exQumb7WIXTSgqYDCagAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 19:09:30.340687 2026] [security2:error] [pid 25942:tid 25942] [client 45.141.128.112:50359] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dennisangellismusic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dennisangellismusic.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ae6bKiZJFzALHXYOVvfpHwAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ท
COMAITE
|
|
Suspicious URL access.
|
Web App Attack
|
|
|
๐บ๐ธ
antlac1
|
|
crowdsecurity/http-probing
|
Brute-Force
Web App Attack
|
|
|
๐ช๐ธ
el-brujo
|
|
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Chrome/ ...
show more
Cloudflare WAF: Request Path: /xmlrpc.php Request Query: Host: foro.elhacker.net userAgent: Chrome/95.5 Safari/535.55 Action: managed_challenge Source: firewallManaged ASN Description: AS-QUALITYNETWORK Country: FI Method: POST Timestamp: 2026-02-24T12:10:47Z ruleId: 5de7edfa648c4d6891dc3e7f84534ffa. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
|
Hacking
SQL Injection
Web App Attack
|
|
|
๐บ๐ธ
brantknudson.org
|
|
Request path 'POST /global-protect/login.esp HTTP/1.1'
|
Web App Attack
|
|
|
Anonymous
|
|
This IP was involved in a brute force and password spray attack.
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.141.128.112 (mail.kiwi-backup.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 07:04:26.028172 2025] [security2:error] [pid 12967:tid 12967] [client 45.141.128.112:26315] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jmms.mx|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jmms.mx"] [uri "/wp-json/wp/v2/users"] [unique_id "aSL4Sld5a46KnOKmMI2TTwAAACY"], referer: https://www.google.com
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|