๐จ๐ฆ
DRI
2026-07-25 16:21:02
(1 day ago)
Web attack/Malicious activity detected
Web App Attack
๐จ๐ฆ
DRI
2026-07-24 08:32:06
(2 days ago)
Web attack/Malicious activity detected
Web App Attack
Anonymous
2026-07-15 09:27:35
(1 week ago)
45.148.233.158 - - [15/Jul/2026:11:27:21 +0200] "POST /xmlrpc.php HTTP/1.1" 302 7068 "-" "Apache-Htt ...
show more
45.148.233.158 - - [15/Jul/2026:11:27:21 +0200] "POST /xmlrpc.php HTTP/1.1" 302 7068 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)"
45.148.233.158 - - [15/Jul/2026:11:27:22 +0200] "GET /wp-login.php HTTP/1.1" 302 7072 "https://www.google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
45.148.233.158 - - [15/Jul/2026:11:27:23 +0200] "GET /wp-login.php HTTP/1.1" 404 17876 "https://www.google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
45.148.233.158 - - [15/Jul/2026:11:27:24 +0200] "GET /wp-login.php HTTP/1.1" 302 7072 "https://www.google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
45.148.233.158 - - [15/Jul/2026:11:27:25 +0200] "GET /wp-login.php HTTP/1.1" 404 17870 "https://www.google.com" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
45.148.
...
show less
Brute-Force
๐ช๐ธ
librebit
2026-07-15 05:05:50
(1 week ago)
Brute force
Brute-Force
๐ช๐ธ
librebit
2026-07-13 04:46:16
(2 weeks ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-15 23:42:34
(2 months ago)
(mod_security) mod_security (id:211030) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:211030) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 19:42:27.191576 2026] [security2:error] [pid 17216:tid 17216] [client 45.148.233.158:22065] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at ARGS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "17"] [id "211030"] [rev "3"] [msg "COMODO WAF: LDAP Injection Attack||www.genesis-castle.com|F|2"] [data "Matched Data: (%'%~%'%|%|%( found within ARGS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agevY3GgTJQg1_SG7YqgaQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-06 20:26:49
(2 months ago)
IM360 WAF: SQL Injection via WordPress Link functionality MV:15 AND and/**/6526=CAST(%27~%27
SQL Injection
Anonymous
2025-12-29 04:35:38
(6 months ago)
Forum/form spam
Web Spam
Anonymous
2025-11-27 21:49:52
(7 months ago)
Forum/form spam
Web Spam
๐ณ๐ฑ
mawan
2025-10-17 09:45:02
(9 months ago)
Suspected of having performed illicit activity on AMS server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-13 23:19:30
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 13 19:19:26.514916 2025] [security2:error] [pid 13537:tid 13537] [client 45.148.233.158:9525] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.televisonic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.televisonic.com"] [uri "/wp/wp-json/wp/v2/users"] [unique_id "aO2I_mOoc7Nvjayflv5YqQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
exxos
2025-10-06 07:03:02
(9 months ago)
Attacks with Bad user agents
Hacking
๐ฎ๐น
alph44
2025-09-26 07:23:02
(10 months ago)
WordPress attack detected by fail2ban: 3 failed attempts
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-05 08:38:46
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 05 03:38:37.929594 2025] [security2:error] [pid 2692347:tid 2692347] [client 45.148.233.158:24241] [client 45.148.233.158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.innolympics.com"] [uri "/.env"] [unique_id "Z8gNjS88oOzavI8oOq6g1wAAABs"], referer: https://tasamm.com/about/ggg161.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-19 19:19:34
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.148.233.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 19 14:19:30.001309 2025] [security2:error] [pid 13660:tid 13660] [client 45.148.233.158:33167] [client 45.148.233.158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clubfansite.com"] [uri "/.env"] [unique_id "Z7Yuwup1sr9sQbB3r3RoygAAACA"], referer: https://tasamm.com/about/ccc58.html
show less
Brute-Force
Bad Web Bot
Web App Attack