๐บ๐ธ
TPI-Abuse
2026-06-23 15:16:57
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 11:16:53.312647 2026] [security2:error] [pid 20245:tid 20245] [client 45.148.124.237:48199] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bacona.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bacona.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ajqjZdarHZEd0sLBxTs8EwAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 09:10:31
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 05:10:26.904331 2026] [security2:error] [pid 20703:tid 20703] [client 45.148.124.237:45067] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blackmanfamily.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blackmanfamily.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ac-EAh2YvA6bcdAMIJtTGwAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-03-18 10:57:59
(3 months ago)
Aggressive web scan
Web App Attack
๐จ๐ญ
backslash
2026-03-17 16:27:00
(3 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
Anonymous
2026-02-20 21:46:19
(4 months ago)
wordpress-trap
Web App Attack
๐ฒ๐น
Malta
2026-02-18 02:14:52
(4 months ago)
45.148.124.237 - - [18/Feb/2026:03:14:51 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows ...
show more
45.148.124.237 - - [18/Feb/2026:03:14:51 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-17 19:31:59
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 17 14:31:54.099696 2025] [security2:error] [pid 18778:tid 18778] [client 45.148.124.237:60509] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||monopolimusic.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "monopolimusic.com"] [uri "/"] [unique_id "aUMFKqIXtMliFzWR3wGNIgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
wil.com
2025-04-01 10:19:26
(1 year ago)
GlobalProtect login attempts with user okelley.
VPN IP
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-03-10 02:57:25
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.124.237 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 22:57:21.529586 2025] [security2:error] [pid 8723:tid 8723] [client 45.148.124.237:57139] [client 45.148.124.237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mtsneffels.com"] [uri "/.env"] [unique_id "Z85VEetr6ZEPrpFJDyTy3AAAABA"], referer: https://tasamm.com/about/mmm194.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
TI
2023-11-01 01:30:45
(2 years ago)
Scrapping website, using diffrent useragents, not wait for response, #botnet20231026
DDoS Attack
Bad Web Bot
๐ฟ๐ฆ
IrisFlower
2022-09-17 09:59:55
(3 years ago)
Unauthorized connection attempt detected from IP address 45.148.124.237 to port 443 [J]
Port Scan
Hacking