๐บ๐ธ
TPI-Abuse
2026-06-16 11:42:56
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 07:42:51.355015 2026] [security2:error] [pid 5588:tid 5691] [client 45.148.232.246:63731] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||andestravel.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "andestravel.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajE2u9QAEC_5CQIHnHFGMwAAAJM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-14 22:35:45
(1 day ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-12 19:56:01
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 15:55:56.780284 2026] [security2:error] [pid 30164:tid 30164] [client 45.148.232.246:13477] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||firstunitedreserve.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "firstunitedreserve.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aixkTDnLHVVZmBTSeZF5_QAAABQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 23:46:02
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 19:45:59.233870 2026] [security2:error] [pid 25710:tid 25710] [client 45.148.232.246:64787] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||333w88.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "333w88.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiNft3gHPTGzeqjchdfqWgAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-21 20:19:32
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 21 16:19:27.155675 2026] [security2:error] [pid 31544:tid 31544] [client 45.148.232.246:52843] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tanny.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tanny.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ag9oz-8rH_ooLpMvwj62hAAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-01 17:28:26
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 13:28:22.801911 2026] [security2:error] [pid 12211:tid 12211] [client 45.148.232.246:45703] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||heron-ent.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "heron-ent.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ac1VttoBA26SUosc_DAbBAAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ambor
2026-03-30 05:34:08
(2 months ago)
Honeypot access: WordPress admin access attempt. Path: /wp-login.php
Brute-Force
Web App Attack
๐ฉ๐ช
kjaerulff
2026-03-28 14:31:21
(2 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐ช๐ธ
ofm-abuse
2026-01-03 06:41:11
(5 months ago)
Brute-force
...
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-02 21:10:31
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.232.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 02 16:10:27.613854 2026] [security2:error] [pid 27401:tid 27401] [client 45.148.232.246:53149] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jolankagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jolankagroup.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aVg0Q2Q6w5YWJPdfhtsP2wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-09-09 21:25:35
(9 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.246
2025-09-09T22:52:35+02 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.246
2025-09-09T22:52:35+02:00 vpn Access-Reject 'printer' station: 45.148.232.246 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-08-12 21:22:53
(10 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.246
2025-08-12T22:04:32+02 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.246
2025-08-12T22:04:32+02:00 vpn Access-Reject 'mgreen' station: 45.148.232.246 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-08-11 10:52:36
(10 months ago)
Unauthorized VPN login attempts: 2 attempts were recorded from 45.148.232.246
2025-08-11T11:26:59+02 ...
show more
Unauthorized VPN login attempts: 2 attempts were recorded from 45.148.232.246
2025-08-11T11:26:59+02:00 vpn Access-Reject 'llamada' station: 45.148.232.246 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-08-11T11:30:32+02:00 vpn Access-Reject 'entorno' station: 45.148.232.246 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-08-11 01:51:13
(10 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.246
2025-08-11T03:39:45+02 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.246
2025-08-11T03:39:45+02:00 vpn Access-Reject 'project' station: 45.148.232.246 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
Anonymous
2025-03-30 18:25:59
(1 year ago)
Ports: *; Direction: 0; Trigger: CT_LIMIT
Brute-Force
SSH