๐ง๐ช
voormedia
2026-05-13 06:53:01
(1 month ago)
Accessed trap at '/xmlrpc.php'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 20:30:06
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 16:30:01.163727 2026] [security2:error] [pid 29785:tid 29785] [client 45.148.234.11:12463] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||donnysimonton.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "donnysimonton.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af-ZScVClmx2Z5kMwW6FUAAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-09 00:49:59
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 20:49:53.485445 2026] [security2:error] [pid 151797:tid 151909] [client 45.148.234.11:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mindgardens.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mindgardens.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adb3sVA9Vl-yHERZqPZG2wAAAhY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-07 17:43:52
(2 months ago)
2026-04-07T19:43:51.958432+02:00 zanati wp(www.sahpa.co.za)[10902]: Blocked authentication attempt f ...
show more
2026-04-07T19:43:51.958432+02:00 zanati wp(www.sahpa.co.za)[10902]: Blocked authentication attempt for Lisa from 45.148.234.11
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 18:37:27
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 14:37:21.472581 2026] [security2:error] [pid 26586:tid 26586] [client 45.148.234.11:17667] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||donnysimonton.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "donnysimonton.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acLZ4bdKJCgfekCldidAbQAAACE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 15:56:08
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 11:56:02.297689 2026] [security2:error] [pid 6743:tid 6743] [client 45.148.234.11:41853] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||misscrankypants.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "misscrankypants.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acK0ErG11fDAiOJ_reTwIgAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
Coolnagour
2026-03-22 19:35:38
(3 months ago)
http-probing: /wp-login.php
Web App Attack
Anonymous
2026-02-12 10:14:46
(4 months ago)
wordpress-trap
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-11-17 16:50:52
(7 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-07-19 00:05:16
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-05-19 15:35:13
(1 year ago)
WP Login Scan Activities
Web App Attack
๐จ๐ญ
backslash
2025-05-18 05:50:03
(1 year ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐จ๐ฆ
wil.com
2025-03-28 08:38:49
(1 year ago)
GlobalProtect login attempts with user SHELBYB.
VPN IP
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-03-27 07:40:40
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 27 03:40:33.506133 2025] [security2:error] [pid 963:tid 963] [client 45.148.234.11:36217] [client 45.148.234.11] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||blacksheepoffroad.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/wp-super-cache/js/cache-loader.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blacksheepoffroad.com"] [uri "/wp-content/plugins/wp-super-cache/js/cache-loader.php"] [unique_id "Z-UA8VlXb3gv26BQHpZ2VAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-21 11:08:56
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.148.234.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 21 07:08:38.144901 2025] [security2:error] [pid 30060:tid 30060] [client 45.148.234.11:43153] [client 45.148.234.11] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||avvmarchetticollini.it|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/wp-super-cache/js/cache-loader.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avvmarchetticollini.it"] [uri "/wp-content/plugins/wp-super-cache/js/cache-loader.php"] [unique_id "Z91ItpCafcl_PWQ3E4arzwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack