๐ฌ๐ง
PeravixGroup
2026-05-07 11:51:59
(4 weeks ago)
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Sever ...
show more
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
๐ฌ๐ง
Aetherweb Ark
2026-05-01 22:25:05
(1 month ago)
(mod_security) mod_security (id:949110) triggered by 45.3.45.173 (IT/Italy/-): N in the last X secs
Web App Attack
๐ฆ๐บ
MAGIC
2026-04-21 00:03:49
(1 month ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฎ๐น
[email protected]
2026-04-18 06:53:43
(1 month ago)
[Sat Apr 18 08:53:42.577275 2026] [authz_core:error] [pid 560721:tid 560783] [remote 45.3.45.173:369 ...
show more
[Sat Apr 18 08:53:42.577275 2026] [authz_core:error] [pid 560721:tid 560783] [remote 45.3.45.173:36935] AH01630: client denied by server configuration: /var/www/html/MyWeb/Wordpress_www/wp-login.php
...
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
jjnxpct
2026-04-03 03:48:35
(2 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /index.php (Rule ID: 942540) - SQL Authentication bypass (split query) [Suspicious: '; found within ARGS:catid: ';]
show less
Web App Attack
SQL Injection
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-02-21 14:44:56
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 21 09:44:51.817594 2026] [security2:error] [pid 7960:tid 7960] [client 45.3.45.173:23309] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hamson.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hamson.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZnE46_knJNAz9hGECSEIAAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-05 20:13:31
(5 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-24 05:51:48
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:51:41.790685 2025] [security2:error] [pid 3374033:tid 3374033] [client 45.3.45.173:25805] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ajwood.net"] [uri "/.svn/wc.db"] [unique_id "aSPybVG85pFCQ3yOQ02nHAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:51:09
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:50:59.412747 2025] [security2:error] [pid 10695:tid 10783] [client 45.3.45.173:29583] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.emgusa.com"] [uri "/.env"] [unique_id "aSPkMyFZz-lT68YT4kO5kAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 03:24:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:24:18.563174 2025] [security2:error] [pid 23448:tid 23448] [client 45.3.45.173:16165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.integritysecurity.us"] [uri "/.git/HEAD"] [unique_id "aSPP4hPjHBbonaZg8MKpwQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Nick Lewis
2025-10-09 19:23:24
(7 months ago)
45.3.45.173 (IT/Italy/-), 5 distributed sshd attacks on account [redacted]
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-03-20 14:19:41
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 20 10:19:35.245131 2025] [security2:error] [pid 10803:tid 10803] [client 45.3.45.173:43401] [client 45.3.45.173] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||intermixx.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "intermixx.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z9wj91gZGPJIB9sbDtvs7gAAABA"], referer: https://intermixx.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-12 11:46:48
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.45.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 12 06:46:43.470613 2025] [security2:error] [pid 1793171:tid 1793171] [client 45.3.45.173:46351] [client 45.3.45.173] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bpcompany.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bpcompany.net"] [uri "/wp-json/wp/v2/users"] [unique_id "Z4Orox_dhFmksPsN7_dUIAAAACE"], referer: https://bpcompany.net
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-07-24 02:18:52
(1 year ago)
Ports: 25,465,587; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH