๐บ๐ธ
TPI-Abuse
2026-06-05 09:38:01
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 05:37:31.845550 2026] [security2:error] [pid 2431:tid 2431] [client 45.148.233.11:47613] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.evolute.io"] [uri "/wp-config.php.old"] [unique_id "aiKY26Oq5oNkoaNnRvoAGgAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 00:43:41
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 20:43:35.957471 2026] [security2:error] [pid 8140:tid 8140] [client 45.148.233.11:53515] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gemexpressions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gemexpressions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahzVty2UZf4C_FG3RduiTAAAAA0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 10:39:42
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 06:39:37.334709 2026] [security2:error] [pid 25047:tid 25057] [client 45.148.233.11:14699] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bullfrogspond.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bullfrogspond.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahls6aUSy-saQ0qzwHOFaAAAAMY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Oakley
2026-05-07 15:49:10
(1 month ago)
(mod_security) mod_security (id:900210) triggered by 45.148.233.11 (NL/Netherlands/-): 5 in the last ...
show more
(mod_security) mod_security (id:900210) triggered by 45.148.233.11 (NL/Netherlands/-): 5 in the last 900 secs
show less
Web App Attack
Hacking
๐จ๐ฟ
ptlab
2026-04-21 00:52:46
(1 month ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-04-18 04:12:41
(1 month ago)
WordPress login attempt
Brute-Force
Anonymous
2026-04-14 15:05:54
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-14 02:01:45
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 22:01:41.436450 2026] [security2:error] [pid 1025804:tid 1025804] [client 45.148.233.11:21189] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dcwenger.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dcwenger.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ad2gBbqVoYKPj9TN8kEGFAAAABs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 12:19:43
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 08:19:36.975992 2026] [security2:error] [pid 27470:tid 27470] [client 45.148.233.11:21291] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||techlinks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "techlinks.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acZ12KAHPprQP4SoTXO9kgAAACw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-03-26 22:56:22
(2 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
nationaleventpros.com
2026-03-21 22:12:32
(2 months ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
xmission.com
2026-03-03 20:38:30
(3 months ago)
45.148.233.11 - - [03/Mar/2026:13:38:30 -0700] "POST /wp-login.php HTTP/1.1" 200 2354 "https://dooce ...
show more
45.148.233.11 - - [03/Mar/2026:13:38:30 -0700] "POST /wp-login.php HTTP/1.1" 200 2354 "https://dooce.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
Brute-Force
Anonymous
2025-10-24 17:06:01
(7 months ago)
Forum/form spam
Web Spam
๐ณ๐ฑ
mawan
2025-10-13 14:31:37
(7 months ago)
Suspected of having performed illicit activity on AMS server.
Web App Attack
๐ณ๐ฟ
Tripwire
2025-02-13 04:23:33
(1 year ago)
Wordpress login attempts
Brute-Force
Web App Attack