๐ฉ๐ช
betternews.app
2026-05-08 05:43:49
(4 weeks ago)
"a web request contained keyword "wp-json"; Suspicious URL: /wp-json/gravitysmtp/v1/tests/mock-data? ...
show more
"a web request contained keyword "wp-json"; Suspicious URL: /wp-json/gravitysmtp/v1/tests/mock-data?page=gravitysmtp-settings"
show less
Web Spam
Blog Spam
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-04 11:11:29
(1 month ago)
Forum/form spam
Web Spam
๐ช๐ธ
10dencehispahard SL
2026-01-26 11:24:49
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2026-01-24 16:58:41
(4 months ago)
wordpress-trap
Web App Attack
๐ฎ๐น
Progetto1
2026-01-21 01:10:16
(4 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2025-12-27 15:55:26
(5 months ago)
SuspiciousB Activity detected by FMBAD System 2025-12-27 18:55:25
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-12-26 01:15:22
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-12-08 19:13:49
(5 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 08:15:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 03:15:08.721900 2025] [security2:error] [pid 3131:tid 3131] [client 45.3.37.13:42019] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "1writeforthegrant.com"] [uri "/.env"] [unique_id "aS6gDBlIS_fqLys0SEm2WgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 05:14:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 00:14:05.675068 2025] [security2:error] [pid 3637:tid 3637] [client 45.3.37.13:30755] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flatchestedmama.com"] [uri "/.env"] [unique_id "aS51naW9ks2p_e8QwNazSgAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 04:06:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 23:06:12.656483 2025] [security2:error] [pid 14700:tid 14700] [client 45.3.37.13:16679] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nbyoung.com"] [uri "/.svn/wc.db"] [unique_id "aS5ltLvWaIbXii96Rl2gvgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2025-12-02 00:54:53
(6 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:53:59
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:53:56.611902 2025] [security2:error] [pid 12649:tid 12649] [client 45.3.37.13:21301] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||admin.turedinmobiliaria.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "admin.turedinmobiliaria.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aSPk5Eoc81zMqPpFVlR1iwAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 04:53:05
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-26 16:45:10
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.37.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 26 12:45:06.377091 2025] [security2:error] [pid 2680:tid 2680] [client 45.3.37.13:14303] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||holyfamilyfoundation.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "holyfamilyfoundation.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aP5QEusdOdP7nd_t5bL5agAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack