๐ฎ๐น
VHosting
2025-12-23 18:20:35
(5 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2025-11-24 08:59:04
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:58:56.951321 2025] [security2:error] [pid 23352:tid 23352] [client 45.3.35.252:59109] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.superstargambling.com"] [uri "/.svn/wc.db"] [unique_id "aSQeUEm2OnqmLSfcCN8MBwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:17:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:17:05.889105 2025] [security2:error] [pid 3458043:tid 3458043] [client 45.3.35.252:18759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lightningbug.farm"] [uri "/.git/HEAD"] [unique_id "aSQGcZTp4IcCRm6af3rPVwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:29:53
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:29:46.295655 2025] [security2:error] [pid 13481:tid 13481] [client 45.3.35.252:43271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.amywoodruff.com"] [uri "/.git/HEAD"] [unique_id "aSP7WkJvpj4GW8ntnHsrcgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-11-13 01:42:04
(7 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-11-02 17:10:48
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 07:02:27
Port Scan
Brute-Force
Exploited Host
Web App Attack
Anonymous
2025-10-28 23:16:51
(7 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐จ๐ฆ
wil.com
2025-10-17 17:48:38
(7 months ago)
GlobalProtect login attempts with user ashlynleyva.
VPN IP
Brute-Force
Anonymous
2025-10-16 11:47:39
(7 months ago)
WordPress Brute Force
Brute-Force
Anonymous
2025-10-04 08:46:19
(8 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.10.04 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.10.04 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-09-29 05:36:10
(8 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.09.29 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.09.29 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-11-02 22:51:29
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.35.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 02 18:51:23.439620 2024] [security2:error] [pid 24990:tid 25013] [client 45.3.35.252:31797] [client 45.3.35.252] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rmgmediagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rmgmediagroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Zyas606i0D51WPL_mUpmOQAAAJU"], referer: https://rmgmediagroup.com
show less
Brute-Force
Bad Web Bot
Web App Attack