🇬🇧
D3monite
2026-09-14 12:31:15
(23 minutes ago)
Attempted Brute Force (whostmgrd)
Brute-Force
🇺🇸
TPI-Abuse
2026-09-14 11:54:39
(59 minutes ago)
(mod_security) mod_security (id:225170) triggered by 45.148.5.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.5.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 07:54:33.604570 2026] [security2:error] [pid 9895:tid 9895] [client 45.148.5.2:34200] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cmgpartners.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cmgpartners.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqfgeUq8l__arH5byBftpQAAAAU"], referer: https://cmgpartners.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 07:58:48
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.148.5.2 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.148.5.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 03:58:43.696227 2026] [security2:error] [pid 12894:tid 12955] [client 45.148.5.2:46128] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||philacentric.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "philacentric.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqepM7afF5ptTR0R5VlfEQAAAAI"], referer: https://philacentric.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇩
Burayot
2026-09-14 06:24:02
(6 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 45.148.5.2 (SE/Sweden/-): 1 in the ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 45.148.5.2 (SE/Sweden/-): 1 in the last 3600 secs
show less
Web App Attack
🇯🇵
Andro
2026-09-14 04:17:00
(8 hours ago)
Unauthorized brute-force authentication attempts detected against the server.
Brute-Force
🇺🇸
NetVexor
2026-09-11 14:05:08
(2 days ago)
Attack source identified and submitted via NetVexor BGP Blackhole Network
Port Scan
Hacking
Brute-Force
🇮🇹
CoreTech srl
2026-09-10 12:38:56
(4 days ago)
cloudlinux2 fail2ban: 2026-09-10 14:33:43,837 fail2ban.filter [1892]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-10 14:33:43,837 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 118.189.128.142 - 2026-09-10 14:33:43cloudlinux2 fail2ban: 2026-09-10 14:34:13,671 fail2ban.filter [1892]: INFO [plesk-proftpd] Found 45.148.5.2 - 2026-09-10 14:34:13cloudlinux2 fail2ban: 2026-09-10 14:34:12,617 fail2ban.filter [1892]: INFO [plesk-proftpd] Found 91.240.67.11 - 2026-09-10 14:34:12cloudlinux2 fail2ban: 2026-09-10 14:34:13,320 fail2ban.filter [1892]: INFO [plesk-proftpd] Found 195.177.216.83 - 2026-09-10 14:34:13cloudlinux2 fail2ban: 2026-09-10 14:34:11,846 fail2ban.filter [1892]: INFO [plesk-proftpd] Found 89.187.161.131 - 2026-09-10 14:34:11cloudlinux2 fail2ban: 2026-09-10 14:35:19,502 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 118.189.128.142 - 2026-09-10 14:35:19cloudlinux2 fail2ban: 2026-09-10 14:36:34,092 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 118.189.128.142 - 2026-09-10 14:36:34cloudli
show less
FTP Brute-Force
🇩🇪
LRob
2026-09-09 15:36:29
(4 days ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: POST | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: POST | path: /wp-login.php | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36 | 2026-09-09 15:36 UTC
show less
Hacking
Web App Attack
🇫🇷
✨
2026-09-09 00:23:14
(5 days ago)
Rule : FTP
2026-09-09 00:16:38 45.148.5.2 - ***hidden-privacy*** 21 PASS *** 530 1326 41 25 14 16 3f ...
show more
Rule : FTP
2026-09-09 00:16:38 45.148.5.2 - ***hidden-privacy*** 21 PASS *** 530 1326 41 25 14 16 3fcc6c79-c16a-42ba-a548-1441632ef2ce -
show less
FTP Brute-Force
Anonymous
2026-09-08 16:31:15
(5 days ago)
Failed login attempt detected by Fail2Ban in plesk-panel jail
Brute-Force
🇮🇹
CoreTech srl
2026-09-08 01:38:57
(6 days ago)
cloudlinux2 fail2ban: 2026-09-08 03:34:25,747 fail2ban.filter [1794]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-08 03:34:25,747 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 172.98.33.96 - 2026-09-08 03:34:25cloudlinux2 fail2ban: 2026-09-08 03:34:30,087 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 172.98.33.96 - 2026-09-08 03:34:29cloudlinux2 fail2ban: 2026-09-08 03:36:14,807 fail2ban.filter [1794]: INFO [plesk-proftpd] Found 45.148.5.2 - 2026-09-08 03:36:14cloudlinux2 fail2ban: 2026-09-08 03:36:15,048 fail2ban.filter [1794]: INFO [plesk-proftpd] Found 62.115.255.163 - 2026-09-08 03:36:15cloudlinux2 fail2ban: 2026-09-08 03:36:23,157 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 155.2.215.30 - 2026-09-08 03:36:22cloudlinux2 fail2ban: 2026-09-08 03:36:33,811 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 36.77.246.169 - 2026-09-08 03:36:33cloudlinux2 fail2ban: 2026-09-08 03:36:42,597 fail2ban.filter [1794]: INFO [plesk-proftpd] Found 45.130.85.6 - 2026-09-08 03:36:42cloudlinux2 fail2ban
show less
FTP Brute-Force
Web App Attack
🇮🇹
CoreTech srl
2026-09-06 10:03:57
(1 week ago)
cloudlinux2 fail2ban: 2026-09-06 11:59:49,493 fail2ban.filter [2048]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-06 11:59:49,493 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 49.43.128.223 - 2026-09-06 11:59:49cloudlinux2 fail2ban: 2026-09-06 12:00:06,649 fail2ban.actions [2048]: NOTICE [plesk-modsecurity] Unban 154.248.222.52cloudlinux2 fail2ban: 2026-09-06 12:01:03,890 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 49.43.128.223 - 2026-09-06 12:01:03cloudlinux2 fail2ban: 2026-09-06 12:01:56,981 fail2ban.actions [2048]: NOTICE [plesk-modsecurity] Ban 49.43.128.223cloudlinux2 fail2ban: 2026-09-06 12:01:56,956 fail2ban.filter [2048]: INFO [plesk-modsecurity] Found 49.43.128.223 - 2026-09-06 12:01:56cloudlinux2 fail2ban: 2026-09-06 12:01:56,986 fail2ban.filter [2048]: INFO [recidive] Found 49.43.128.223 - 2026-09-06 12:01:56cloudlinux2 fail2ban: 2026-09-06 12:03:07,717 fail2ban.filter [2048]: INFO [plesk-wordpress] Found 144.91.127.24 - 2026-09-06 12:03:06cloudlinux2 fail2ban: 2026-09-06 12:03:30,180 fail2
show less
FTP Brute-Force
Web App Attack
🇫🇮
inlink.ltd
2026-09-04 16:21:58
(1 week ago)
Known malicious PHP file or CMS probe
Web App Attack
🇳🇱
EGP Abuse Dept
2026-09-04 08:43:15
(1 week ago)
Unauthorized connection to FTP port 21
Port Scan
Hacking
🇨🇭
backslash
2026-09-04 04:12:02
(1 week ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot