๐จ๐ญ
backslash
2026-06-07 02:06:00
(3 days ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-20 21:26:31
(2 weeks ago)
(mod_security) mod_security (id:949110) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 17:26:26.482989 2026] [security2:error] [pid 11991:tid 11991] [client 45.145.131.53:62189] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "delcano.org"] [uri "/wp-config.inc"] [unique_id "ag4nAiiTG9wFahYYJR_3-wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 20:21:38
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 16:21:34.005173 2026] [security2:error] [pid 24834:tid 24834] [client 45.145.131.53:15805] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.txt" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mkdesignndetailing.com"] [uri "/wp-config.txt"] [unique_id "ag4XztLDgANIxdhrBzptPwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 13:36:39
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 09:36:34.758870 2026] [security2:error] [pid 12521:tid 12521] [client 45.145.131.53:54653] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.grannyswash.kunzteam.com|F|2"] [data ".inc"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.grannyswash.kunzteam.com"] [uri "/wp-config.inc"] [unique_id "ag244rU9MYuzJy68Oj5zOAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2026-05-14 20:05:06
(3 weeks ago)
IM360 WAF: WordPress plugins/themes version enumeration
Brute-Force
FTP Brute-Force
Open Proxy
๐จ๐ฟ
ptlab
2026-05-13 18:45:34
(3 weeks ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-05-12 10:21:06
(4 weeks ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-05-06 14:25:10
(1 month ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-05-02 12:20:39
(1 month ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-04-16 11:03:07
(1 month ago)
Restricted File Access Attempt. Matched phrase "/.env" at REQUEST_FILENAME. (930130-122)
Hacking
Web App Attack
๐ฉ๐ช
LRob.fr
2026-04-16 08:00:49
(1 month ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
Anonymous
2026-03-18 11:22:57
(2 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-06 21:48:43
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 17:48:39.747770 2025] [security2:error] [pid 20470:tid 20470] [client 45.145.131.53:15819] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Lochmere II Recliner/Broughton Saddle/originals/Thumbs.db"] [unique_id "aLysNxn4YxwL9kdCfbR1MwAAAB4"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Lochmere%20II%20Recliner/Broughton%20Saddle/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-05 10:33:23
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.145.131.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 05 05:33:16.481019 2025] [security2:error] [pid 85287:tid 85287] [client 45.145.131.53:50539] [client 45.145.131.53] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Hudson II/Vermont Bark/Loveseat/Thumbs.db"] [unique_id "Z8gobOXYpR6J_V-iCfIA4gAAAA8"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Hudson%20II/Vermont%20Bark/Loveseat/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Anonymous
2025-02-28 16:00:00
(1 year ago)
Brute force attack detected from 45.145.131.53
DDoS Attack
Brute-Force
Web App Attack