๐ฎ๐น
VHosting
2026-04-11 00:35:04
(2 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-04-04 15:07:56
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
xmission.com
2026-03-16 00:46:08
(3 months ago)
Blocked by UFW (TCP on 6881)
Source port: 3637
TTL: 52
Packet length: 60
TOS: 0x08
This report (for ...
show more
Blocked by UFW (TCP on 6881)
Source port: 3637
TTL: 52
Packet length: 60
TOS: 0x08
This report (for 45.152.150.137) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฌ๐ง
consul.to
2026-03-13 01:58:56
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-03-12 15:59:00
(3 months ago)
queryStr : error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100 ...
show more
queryStr : error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100&error=100
show less
Brute-Force
๐ฌ๐ง
consul.to
2026-02-27 03:07:39
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
kosada.com
2026-02-16 13:20:42
(4 months ago)
Web password guessing
Brute-Force
๐ง๐ช
cmbplf
2025-12-26 02:59:28
(5 months ago)
5 /?vvrrf=kzwtj (3w2d17h)
Brute-Force
Bad Web Bot
๐ง๐ช
fpoulet
2025-11-20 06:55:31
(6 months ago)
Blocked by Fail2Ban (Postfix BruteForce)
Brute-Force
SSH
๐ณ๐ฑ
rroethof
2025-11-20 06:42:12
(6 months ago)
(smtpauth) Failed SMTP AUTH login from 45.152.150.137 (US/United States/-): 5 in the last 3600 secs; ...
show more
(smtpauth) Failed SMTP AUTH login from 45.152.150.137 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SMTPAUTH; Logs: 2025-11-20 07:42:03 plain authenticator failed for ([10.8.18.173]) [45.152.150.137]: 535 Incorrect authentication data ([email protected] )
2025-11-20 07:42:04 login authenticator failed for ([10.8.18.173]) [45.152.150.137]: 535 Incorrect authentication data ([email protected] )
2025-11-20 07:42:05 plain authenticator failed for ([10.8.18.173]) [45.152.150.137]: 535 Incorrect authentication data ([email protected] )
2025-11-20 07:42:05 login authenticator failed for ([10.8.18.173]) [45.152.150.137]: 535 Incorrect authentication data ([email protected] )
2025-11-20 07:42:06 plain authenticator failed for ([10.8.18.173]) [45.152.150.137]: 535 Incorrect authentication data ([email protected] )
show less
Spoofing
Brute-Force
Bad Web Bot
Web App Attack
SSH
๐ณ๐ฑ
BlueWire Hosting
2025-10-25 04:10:20
(7 months ago)
Probing for application vulnerabilities
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-25 02:07:40
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 45.152.150.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.152.150.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 24 22:07:33.312902 2025] [security2:error] [pid 10109:tid 10109] [client 45.152.150.137:7597] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chaletparkaparts.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chaletparkaparts.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aPww5YboL138DC7UMl_dVQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-10-25 02:00:08
(7 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2025-10-25 00:20:02
(7 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-24 23:08:52
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 45.152.150.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.152.150.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 24 19:08:48.771579 2025] [security2:error] [pid 5004:tid 5022] [client 45.152.150.137:17205] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blog.stonyp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blog.stonyp.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aPwHAA85afQ_WUcF9UVfCAAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack