๐ฏ๐ต
ki3
2025-09-24 13:08:11
(10 months ago)
Fail2Ban: Web App Attacks and Forum Spam 45.202.78.133 1758719290.0(JST)
Web Spam
Bad Web Bot
Web App Attack
Anonymous
2025-08-13 19:40:45
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-08-12 10:46:09
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 12 06:46:03.841773 2025] [security2:error] [pid 26304:tid 26304] [client 45.202.78.133:26705] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sarawatt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sarawatt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aJsba9TzSjds6l5lwEmYqQAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-25 10:23:27
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 25 06:23:19.867193 2025] [security2:error] [pid 27878:tid 27878] [client 45.202.78.133:35123] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kamireddi.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kamireddi.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aINbF1EmLoIbla6W-pW-MQAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2025-07-16 12:10:17
(1 year ago)
Form spam
Web Spam
๐ต๐ฑ
sefinek.net
2025-07-09 00:13:32
(1 year ago)
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1. ...
show more
Triggered Cloudflare WAF (firewallCustom) from DE.
Action taken: MANAGED_CHALLENGE
Protocol: HTTP/1.1 (GET method)
Endpoint: /genshin-stella-mod
UA: Mozilla/5.0 (X11; Ubuntu; Linux i686; rv:114.0) Gecko/20100101 Firefox/114.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐จ๐ญ
backslash
2025-07-05 10:20:12
(1 year ago)
block ruleset 6A1105329D233F6F53B9B61CE056BD4DAAE75AB4
Web Spam
๐บ๐ธ
TPI-Abuse
2025-07-03 06:03:36
(1 year ago)
(mod_security) mod_security (id:220020) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:220020) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 03 02:03:29.766580 2025] [security2:error] [pid 24615:tid 24615] [client 45.202.78.133:46505] ModSecurity: Access denied with code 403 (phase 1). Pattern match "(^|;)=(;|$)" at REQUEST_HEADERS:Cookie. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "74"] [id "220020"] [rev "2"] [msg "COMODO WAF: DoS vulnerability in Apache 2.2.17 - 2.2.21 (CVE-2012-0021)||interiorsolutions-stuart.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "interiorsolutions-stuart.com"] [uri "/contact/"] [unique_id "aGYdMYvekQSP9vaeZaOwTgAAAAg"], referer: https://11ten.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oncord
2025-06-26 06:57:42
(1 year ago)
Form spam
Web Spam
๐ซ๐ท
Netrix
2025-06-18 16:32:00
(1 year ago)
L7 Flood botnet hosted by 3xK Tech
DDoS Attack
Web Spam
SSH
๐ฉ๐ช
neckaralb-admin.de
2025-05-27 06:27:24
(1 year ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2025-05-13 03:37:44
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
nowyouknow
2025-05-12 18:59:02
(1 year ago)
(From [email protected] ) We have partnered with one of the largest public relations firms on the ...
show more
(From [email protected] ) We have partnered with one of the largest public relations firms on the east coast, Kotton Grammer Media, and we're developing a media piece on how chiropractors are using AI to stay competitive.
We are looking to conduct a 7-min interview via email/zoom with a few business owners from Norwalk, and get your feedback & thoughts on our Voice AI technology.
In return, your feedback will be used in an upcoming article that will be published - a great way to bring positive attention to your business at no cost.
Want more information?
Best,
Scotlyn Lozano
Relationship Manager
FromFuture.io
show less
Phishing
Web Spam
๐บ๐ธ
TPI-Abuse
2025-05-10 03:44:36
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.202.78.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 09 23:44:28.587973 2025] [security2:error] [pid 4191139:tid 4191139] [client 45.202.78.133:42673] [client 45.202.78.133] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thehomedaleinn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thehomedaleinn.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aB7LnAEjrtN13YFWgZcwmAAAABU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2025-04-23 23:20:54
(1 year ago)
WP-xmlrpc exploit
Web Spam
Blog Spam
Hacking
Exploited Host
Web App Attack