๐ณ๐ฑ
MyGlobalFlowers
2026-08-05 03:46:10
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐ฉ
Burayot
2026-07-28 17:13:31
(3 weeks ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 45.157.112.155 (FR/France/-): 2 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 45.157.112.155 (FR/France/-): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 16:24:07
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.157.112.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 12:24:04.084003 2026] [security2:error] [pid 2591779:tid 2591779] [client 45.157.112.155:61397] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.alafiariverrendezvous.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.alafiariverrendezvous.org"] [uri "/wp-json/wp/v2/users"] [unique_id "amjXpFXgQgI-f66Mv9HWmwAAAAc"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
IndigoRidge
2026-07-28 15:34:39
(3 weeks ago)
45.157.112.155 - - [28/Jul/2026:11:34:31 -0400] "GET /wp-login.php?redirect_to=https%3A%2F%2Fdrannag ...
show more
45.157.112.155 - - [28/Jul/2026:11:34:31 -0400] "GET /wp-login.php?redirect_to=https%3A%2F%2Fdrannagarrett.com%2Fwp-admin%2Findex.php&reauth=1 HTTP/1.1" 200 10518 "https://drannagarrett.com/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:119.0) Gecko/20100101 Firefox/119.0"
45.157.112.155 - - [28/Jul/2026:11:34:32 -0400] "POST /wp-login.php HTTP/1.1" 200 8602 "https://drannagarrett.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
45.157.112.155 - - [28/Jul/2026:11:34:34 -0400] "GET /wp-login.php?redirect_to=https%3A%2F%2Fdrannagarrett.com%2Fwp-admin%2Findex.php&reauth=1 HTTP/1.1" 200 10518 "https://drannagarrett.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
45.157.112.155 - - [28/Jul/2026:11:34:34 -0400] "POST /wp-login.php HTTP/1.1" 200 8543 "https://drannagarrett.com/wp-login.php" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) Appl
...
show less
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-07-28 12:40:04
(3 weeks ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
Anonymous
2026-07-24 05:32:12
(4 weeks ago)
"GET /wp-login.php HTTP/1.1"
Hacking
Web App Attack
Anonymous
2026-07-23 18:05:53
(1 month ago)
Blocked: Reason='Suspicious traffic score=60 (review-based detection)'; Requests=4
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-23 17:22:03
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.157.112.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 13:21:58.987094 2026] [security2:error] [pid 2501957:tid 2501957] [client 45.157.112.155:25695] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cmcnow.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cmcnow.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amJNttPFRz9Dth65Vfo9sgAAABI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-07-23 17:03:00
(1 month ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐ซ๐ท
Kenshin869
2026-07-23 17:02:13
(1 month ago)
Wordpress unauthorized access attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-23 16:42:44
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.157.112.155 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.157.112.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 12:42:35.433274 2026] [security2:error] [pid 520898:tid 520898] [client 45.157.112.155:57009] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rachelfia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rachelfia.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amJEe0Yz9tHRGkgHGazq3gAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ANTI SCANNER
2026-07-23 15:23:29
(1 month ago)
Scanner : /wp-login.php
Web Spam
๐ฌ๐ง
consul.to
2026-07-11 05:34:20
(1 month ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
nyt
2026-07-01 19:34:08
(1 month ago)
Brute-Force, Web App Attack, 503 on login page
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-01 17:11:27
(1 month ago)
45.157.112.155 - - [01/Jul/2026:20:10:47 +0300] "GET /wp-login.php HTTP/1.1" 404 684 "https://www.bi ...
show more
45.157.112.155 - - [01/Jul/2026:20:10:47 +0300] "GET /wp-login.php HTTP/1.1" 404 684 "https://www.bing.com/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.2 Safari/605.1.15"
45.157.112.155 - - [01/Jul/2026:20:11:27 +0300] "GET /wp-admin/ HTTP/1.1" 404 3364 "https://wordpress.org/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack