🇺🇸
nationaleventpros.com
2026-09-05 03:24:36
(1 day ago)
WordPress login attempt
Brute-Force
🇩🇪
FD-IX
2026-08-18 13:47:21
(2 weeks ago)
Brute-force login attack detected by WordPress firewall.
Brute-Force
Web App Attack
Anonymous
2026-05-21 20:53:23
(3 months ago)
FPROCO WEBEXPLOIT 45.148.232.48 (45.148.232.48)
Web App Attack
🇺🇸
kosada.com
2026-05-13 15:29:20
(3 months ago)
Web password guessing
Brute-Force
🇨🇭
backslash
2026-04-01 07:21:00
(5 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
🇺🇸
TPI-Abuse
2026-03-15 02:44:16
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 22:44:11.626495 2026] [security2:error] [pid 2881:tid 2881] [client 45.148.232.48:13417] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rogerbrooks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rogerbrooks.com"] [uri "/wp-json/wp/v2/users"] [unique_id "abYc-zqB0tmC7B5jXGWfawAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-01 10:07:06
(7 months ago)
(mod_security) mod_security (id:240335) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 01 05:07:01.490619 2026] [security2:error] [pid 3424416:tid 3424427] [client 45.148.232.48:18895] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 45.148.232.48 (+1 hits since last alert)|www.jd-web-designs.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.jd-web-designs.com"] [uri "/xmlrpc.php"] [unique_id "aX8lxX4gKtx21JFb0koNDAAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2025-06-01 06:15:06
(1 year ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
🇨🇿
lp
2025-03-15 02:52:18
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.48
2025-03-15T02:48:13+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.148.232.48
2025-03-15T02:48:13+01:00 vpn Access-Reject 'buttman' station: 45.148.232.48 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2025-03-03 14:43:50
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 03 09:43:43.640137 2025] [security2:error] [pid 30584:tid 30584] [client 45.148.232.48:16417] [client 45.148.232.48] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greensandbeans.us"] [uri "/.env"] [unique_id "Z8XAH5E8NCW2e28ygGeXGwAAAAc"], referer: https://tasamm.com/about/ggg35.html
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-02-13 19:41:36
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.232.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 13 14:41:30.346213 2025] [security2:error] [pid 16024:tid 16159] [client 45.148.232.48:18513] [client 45.148.232.48] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "baggymaggy.docdalton.com"] [uri "/.env"] [unique_id "Z65K6l90XsKuj3yzJ8rCUwAAAhY"], referer: https://tasamm.com/about/bbb6.html
show less
Brute-Force
Bad Web Bot
Web App Attack
🇷🇺
sms.ru
2024-09-21 05:50:07
(1 year ago)
SMS pumping attack from foreign country
DDoS Attack
Anonymous
2023-11-23 10:16:27
(2 years ago)
opencart admin attack from fail2ban
...
DDoS Attack
Brute-Force
SSH
🇪🇸
10dencehispahard SL
2023-03-23 22:25:39
(3 years ago)
Unauthorized login attempts [{'wordpress'}]
Brute-Force
Web App Attack
🇺🇸
mnsf
2023-03-13 02:05:53
(3 years ago)
Login Too Frequent (8)
Brute-Force
Web App Attack