🇦🇺
oncord
2026-03-11 05:36:17
(6 months ago)
Form spam
Web Spam
🇧🇪
cmbplf
2025-12-13 11:59:02
(9 months ago)
20.994 requests in 1 hour (2d6h59m)
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2025-11-24 09:45:08
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 04:45:03.097063 2025] [security2:error] [pid 20440:tid 20440] [client 45.3.45.129:50243] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.truecontrarian.royal-barbershop.com"] [uri "/.svn/wc.db"] [unique_id "aSQpHw4j0UPq8BlOyqm1ngAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-24 08:38:31
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 03:38:24.893335 2025] [security2:error] [pid 26778:tid 26778] [client 45.3.45.129:30693] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.springfield50.org"] [uri "/.env"] [unique_id "aSQZgE980mScKJKyyV9Z7AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-24 06:01:00
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:00:55.734450 2025] [security2:error] [pid 18325:tid 18338] [client 45.3.45.129:58487] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.barnettbusinessgroup.com"] [uri "/.git/HEAD"] [unique_id "aSP0l7ibCkDUtlE56PA98wAAAEs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-24 04:57:21
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:57:15.471233 2025] [security2:error] [pid 14955:tid 14955] [client 45.3.45.129:57445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.stefchild.com"] [uri "/.env"] [unique_id "aSPlq-rVRywVf4EOr-DmvgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-24 04:40:59
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:40:53.452648 2025] [security2:error] [pid 3965258:tid 3965285] [client 45.3.45.129:60955] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.retnetsos.com"] [uri "/.svn/wc.db"] [unique_id "aSPh1chgZFlRjqvFboh5CgAAAQ4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
10dencehispahard SL
2025-11-19 08:28:32
(9 months ago)
WP probing for vulnerabilities
Hacking
Exploited Host
🇺🇸
TPI-Abuse
2025-11-17 04:10:08
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 16 23:09:59.772601 2025] [security2:error] [pid 8176:tid 8176] [client 45.3.45.129:42669] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.lorendata.net"] [uri "/.env"] [unique_id "aRqgFxchWja6x7gy_BmRwwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-03-03 05:32:25
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 03 00:32:20.517183 2025] [security2:error] [pid 4004285:tid 4004285] [client 45.3.45.129:35803] [client 45.3.45.129] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||phlippo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "phlippo.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z8U-5A0_Wp-CMHLbX-B6uQAAAAA"], referer: https://phlippo.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-01-11 08:15:06
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.45.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 11 03:15:01.748377 2025] [security2:error] [pid 3973500:tid 3973500] [client 45.3.45.129:44227] [client 45.3.45.129] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||laradioactivitat.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "laradioactivitat.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z4IoheYdwCHYYoAgDO2TIQAAAAk"], referer: https://laradioactivitat.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TheMadBeaker
2024-10-24 22:14:21
(1 year ago)
Fail2Ban Ban Triggered
Wordpress Attack Attempt
Brute-Force
Web App Attack