๐บ๐ธ
lostswordfish.com
2026-10-05 06:56:04
(1 day ago)
Wordfence waf block on advocates4change
Web App Attack
๐ซ๐ท
j-tap
2026-10-04 09:30:49
(2 days ago)
WordPress honeypot: automated scanner (xmlrpc / installer / .env / direct login POST)
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-10-02 09:27:57
(4 days ago)
WordPress login attempt
Brute-Force
๐จ๐ฟ
lp
2026-09-23 00:23:16
(2 weeks ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.3.40.149
2026-09-23T00:57:52+02:00 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.3.40.149
2026-09-23T00:57:52+02:00 vpn Access-Reject 'usuario1' station: 45.3.40.149 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐ฉ๐ช
hero2026
2026-09-17 04:41:00
(2 weeks ago)
Blocked by Fail2ban
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-03 03:46:14
(1 month ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-03 03:46:14
(1 month ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ฉ๐ช
F242
2026-01-30 05:10:40
(8 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 16:03:00
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 11:02:56.860224 2025] [security2:error] [pid 11430:tid 11430] [client 45.3.40.149:54875] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garon.us"] [uri "/.git/HEAD"] [unique_id "aTGwsDNMnK4iP2lC0MLvOAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 00:32:16
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 03 19:32:12.211195 2025] [security2:error] [pid 28701:tid 28701] [client 45.3.40.149:21255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "now-app.space"] [uri "/.git/HEAD"] [unique_id "aTDWjK30YIgVAH2wwT37LQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:22:33
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:22:22.946500 2025] [security2:error] [pid 773:tid 773] [client 45.3.40.149:35507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.dentsville398.org"] [uri "/.git/HEAD"] [unique_id "aSU9DtShOEvE9PywxXHH2QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:12:45
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:12:33.276787 2025] [security2:error] [pid 20846:tid 20846] [client 45.3.40.149:37327] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.leannebostwick.com"] [uri "/.svn/wc.db"] [unique_id "aSUssa1vxKC3mRpVPwcntwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:51:07
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:51:02.038248 2025] [security2:error] [pid 20231:tid 20231] [client 45.3.40.149:40439] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.possmartterminal.com"] [uri "/.git/HEAD"] [unique_id "aSUnptyGy8NHoYbz0GKQ6AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:50:52
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:50:44.014729 2025] [security2:error] [pid 20892:tid 20892] [client 45.3.40.149:22397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.scadainthecloud.com"] [uri "/.git/HEAD"] [unique_id "aSUZhOOpt2cuYTv-4-RrQwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:25:55
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.40.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:25:49.425900 2025] [security2:error] [pid 31330:tid 31330] [client 45.3.40.149:13289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.studioarmanni.com"] [uri "/.env"] [unique_id "aSUTrUBH0w45vDVGK484vQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack