๐ซ๐ท
Sklurk
2026-07-29 02:52:53
(1 hour ago)
Web App Attack
Web App Attack
๐ซ๐ท
Sklurk
2026-07-09 01:20:19
(2 weeks ago)
Web App Attack
Web App Attack
๐ซ๐ท
masterguru
2026-04-29 01:24:33
(3 months ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 45.3.52.86 (BR/Brazil/-): 1 in the la ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 45.3.52.86 (BR/Brazil/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
nationaleventpros.com
2026-02-20 12:39:00
(5 months ago)
WordPress login attempt
Brute-Force
๐ช๐ธ
10dencehispahard SL
2026-01-26 11:39:07
(6 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-01-11 08:43:44
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 11 03:43:37.714144 2026] [security2:error] [pid 21544:tid 21544] [client 45.3.52.86:27337] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "normteslaa.com"] [uri "/.svn/wc.db"] [unique_id "aWNiuV0dzFGRBK8NKJvBwAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-31 13:05:26
(6 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-30 10:22:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 30 05:21:46.301660 2025] [security2:error] [pid 22919:tid 22919] [client 45.3.52.86:11633] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.trafficstopper.com"] [uri "/.svn/wc.db"] [unique_id "aVOnunDFQaqP9pewHxXseAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 03:41:25
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 22:41:18.420291 2025] [security2:error] [pid 2566013:tid 2566030] [client 45.3.52.86:31675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "globalpartssolution.com"] [uri "/.git/HEAD"] [unique_id "aVH4XppwqS-pohtV-2wYKQAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-27 19:24:42
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 14:24:37.308354 2025] [security2:error] [pid 22031:tid 22031] [client 45.3.52.86:56693] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arsndetx.com"] [uri "/.env"] [unique_id "aSildXif4KNyk_oACHseswAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 18:02:25
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 13:02:16.891501 2025] [security2:error] [pid 5596:tid 5596] [client 45.3.52.86:32319] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keithbowles.com"] [uri "/.git/HEAD"] [unique_id "aSdAqD-ocLrjkiBxHsPd2AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-08 10:24:46
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 08 06:24:39.700778 2025] [security2:error] [pid 13440:tid 13440] [client 45.3.52.86:59151] [client 45.3.52.86] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cidv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cidv.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_T5Z4VqGdmL29TjQTVC_wAAAAI"], referer: https://cidv.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-12-22 06:03:02
(1 year ago)
(mod_security) mod_security (id:212620) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:212620) triggered by 45.3.52.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 22 01:02:38.759202 2024] [security2:error] [pid 380:tid 380] [client 45.3.52.86:46963] [client 45.3.52.86] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||old.renju.net|F|2"] [data "Matched Data: <script found within REQUEST_URI: /media/searchgames.php?confirmopening=&confirmopponentname=<script>alert('xss')</script>&confirmplayercolor=&confirmplayername=4145&confirmplayerresult=&confirmsubmit=yes&confirmtourcountry=&confirmtourname=&confirmtouryear=&limit=20&rows=0"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "old.renju.net"] [uri "/media/searchgames.php"] [unique_id "Z2erfsSG41XT9xUt6AP8TQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2024-12-01 05:11:28
(1 year ago)
Wordpress malicious attack:[octaflood]
Web App Attack