๐ง๐ช
Saec
2026-06-05 17:45:31
(3 months ago)
Jarvis auto-ban: CF honeypot path /wp-login.php (2ร on saec.me)
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 08:56:22
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 04:56:14.625084 2026] [security2:error] [pid 13689:tid 13689] [client 45.148.233.141:13277] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||natursac.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "natursac.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acOjLtZpHmCsUU4-2uuVZwAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 11:08:10
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 07:08:06.651806 2026] [security2:error] [pid 22358:tid 22358] [client 45.148.233.141:52279] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||barkan.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "barkan.us"] [uri "/wp-json/wp/v2/users"] [unique_id "ab58Fm_TGLwjb4ccon2j0wAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 08:38:49
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 04:38:40.983913 2026] [security2:error] [pid 8449:tid 8449] [client 45.148.233.141:63873] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bryanbender.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bryanbender.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ab5ZEG0AZCh8daNTe-z4aAAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-03-14 19:14:14
(6 months ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐บ๐ธ
Psycho Solutions LLC
2026-03-13 05:50:28
(6 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 3/13/2026 5:50 am (UTC-6)
show less
Web App Attack
Bad Web Bot
Web Spam
Hacking
๐ช๐ธ
10dencehispahard SL
2026-01-20 06:51:33
(7 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐ฌ๐ง
mpqtyler
2025-09-29 09:00:37
(11 months ago)
Failed order. WooCommerce store.
Fraud Orders
๐ธ๐ช
SkyDancer
2025-09-24 21:22:22
(11 months ago)
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blo ...
show more
Multiple intrusion attempts via http/https on known vulnerable url offsets. Attack automatically blocked by SkyDancer Ai(web-X).
show less
Hacking
Brute-Force
๐บ๐ธ
OceanTreasure
2025-09-23 09:05:05
(11 months ago)
tcp/443; Attempt to access WordPress login page: "GET /wp-login.php" @ 2025-09-23T08:58:28Z [proxy]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-21 03:55:41
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 20 23:55:35.089330 2025] [security2:error] [pid 21598:tid 21598] [client 45.148.233.141:26315] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hvacmechanalysis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hvacmechanalysis.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aM93N_bxFXzGBttyY4UljgAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-05-04 22:21:56
(1 year ago)
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/45.148.233.141
2025-05 ...
show more
ThreatBook Intelligence: Zombie,Spam more details on https://threatbook.io/ip/45.148.233.141
2025-05-04 05:21:17 /+CSCOE+/logon.html
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-10 01:37:23
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.233.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 21:37:19.608421 2025] [security2:error] [pid 19041:tid 19041] [client 45.148.233.141:43481] [client 45.148.233.141] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelholdengc.com"] [uri "/.env"] [unique_id "Z85CTyTy8JNfYtyDKUuw5QAAAAU"], referer: https://tasamm.com/about/mmm168.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-02-03 20:06:49
(1 year ago)
WP Login Scan Activities
Web App Attack
๐ท๐บ
sms.ru
2024-09-26 19:55:05
(1 year ago)
SMS pumping attack from foreign country
DDoS Attack