๐ซ๐ฎ
JimArchon72
2026-06-04 00:15:20
(3 days ago)
2026/06/04 00:13:27 "GET /wp-login.php?action=register HTTP/1.1"
Web App Attack
๐ฉ๐ช
Oakley
2026-05-20 13:33:39
(2 weeks ago)
(mod_security) mod_security (id:900177) triggered by 45.141.128.238 (US/United States/webwise.mysear ...
show more
(mod_security) mod_security (id:900177) triggered by 45.141.128.238 (US/United States/webwise.mysearchapps.com): 5 in the last 900 secs
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-30 07:24:04
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 03:23:59.625593 2026] [security2:error] [pid 10633:tid 10633] [client 45.141.128.238:41917] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sobhrach.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sobhrach.com"] [uri "/s3cmd.ini"] [unique_id "afMDj7WLuMXI-0ss76DpRgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 18:37:02
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 14:36:57.323291 2026] [security2:error] [pid 21687:tid 21687] [client 45.141.128.238:34659] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||thepeonypeople.com.vanemby.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "thepeonypeople.com.vanemby.com"] [uri "/s3cmd.ini"] [unique_id "afJPyaX8E_EqQDSFk76avQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 21:36:48
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 17:36:44.598103 2026] [security2:error] [pid 679:tid 776] [client 45.141.128.238:17583] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.ingeconsultcr.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.ingeconsultcr.com"] [uri "/s3cmd.ini"] [unique_id "afEobB14PtNnmeccgqcp3QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-18 16:58:28
(3 months ago)
GlobalProtect Password Spraying
Brute-Force
๐ซ๐ท
masterguru
2026-02-03 07:49:14
(4 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.141.128.238 (NL/The Netherlands/webwise.mys ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 45.141.128.238 (NL/The Netherlands/webwise.mysearchapps.com): 1 in the last 3600 secs (0-196)
show less
Hacking
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-10 14:37:43
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-10-17 00:57:51
(7 months ago)
WP Admin Scan Activities
Web App Attack
Anonymous
2025-10-02 08:18:32
(8 months ago)
wordpress-trap
Web App Attack
๐ฉ๐ช
stinpriza
2025-09-06 04:51:19
(9 months ago)
Web App Attack
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2025-08-30 10:08:34
(9 months ago)
2025-08-30 @ 12:08:34 (CET) ~ Blocked based on risk assessment and prior abuse reports
Web App Attack
๐จ๐ญ
backslash
2025-08-22 20:10:09
(9 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-08-22 14:30:43
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 45.141.128.238 (webwise.mysearchapps.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 22 10:30:39.512100 2025] [security2:error] [pid 18119:tid 18119] [client 45.141.128.238:64809] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||assheton.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "assheton.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aKh_D2fGZS_IRq-qI4r2owAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack