๐ฌ๐ท
setupgr
2026-06-12 14:31:03
(1 hour ago)
(mod_security) mod_security (id:900001) triggered by 45.3.53.153: 1 in the last 86400 secs; Ports: * ...
show more
(mod_security) mod_security (id:900001) triggered by 45.3.53.153: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Fri Jun 12 17:31:01.665754 2026] [security2:error] [pid 326864:tid 326910] [client 45.3.53.153:37421] ModSecurity: Access denied with code 403 (phase 1). Match of "rx ^(www\\\\.)?(pankoskal\\\\.gr|alloweddomain2\\\\.com)$" against "REQUEST_HEADERS:Host" required. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "74"] [id "900001"] [msg "Blocked WP Login attempt on domain: mail.doityourself.gr"] [severity "CRITICAL"] [tag "security"] [hostname "mail.doityourself.gr"] [uri "/wp-login.php"] [unique_id "aiwYJcuFnDrX8qeXldOAggAAANM"], referer: https://mail.doityourself.gr/wp-login.php
show less
Port Scan
๐บ๐ธ
dtorrer
2026-06-11 22:20:51
(18 hours ago)
Brute-force general attack.
Brute-Force
๐บ๐ธ
nationaleventpros.com
2026-06-11 20:36:35
(19 hours ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
koinkash.org
2026-06-10 20:10:44
(1 day ago)
They are fraudulent. Malicious threat actor requesting php file /wp-login.php
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-06-10 09:54:05
(2 days ago)
Wordfence waf block on jestrellafoundation
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-10 02:13:51
(2 days ago)
(y4) Failed scan -byebye- from 45.3.53.153 (BR/Brazil/-): (CF_ENABLE)
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-05 08:15:36
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 03:15:29.004741 2026] [security2:error] [pid 2915:tid 2938] [client 45.3.53.153:46355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.howardhallis.com"] [uri "/.git/objects/9d/1706630bbbbd3c3aa2fcf7cf668f1af369eade"] [unique_id "aak7oWbdh7c6FWT9QFVN0gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2026-01-26 11:39:23
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-12-29 08:16:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 03:16:37.654659 2025] [security2:error] [pid 3589:tid 3594] [client 45.3.53.153:14681] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rbarw.com"] [uri "/.svn/wc.db"] [unique_id "aVI45RYHTuZ-V5QGqWkk-QAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 07:27:01
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 02:26:56.529760 2025] [security2:error] [pid 13896:tid 13896] [client 45.3.53.153:46333] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "soereng.com"] [uri "/.git/HEAD"] [unique_id "aVItQE6izISIhcaAdCysLAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 04:39:54
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.153 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:39:47.191961 2025] [security2:error] [pid 17165:tid 17165] [client 45.3.53.153:50457] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scottmoller.com"] [uri "/.svn/wc.db"] [unique_id "aVIGE9AXZnfsUMC2zlu9OQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2025-11-28 05:10:06
(6 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
Anonymous
2025-11-02 19:34:48
(7 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/02 07:00:56
Port Scan
Brute-Force
Exploited Host
Web App Attack
๐ณ๐ฑ
EGP Abuse Dept
2025-10-27 02:26:12
(7 months ago)
Unauthorized connection to SSH port 22
Port Scan
Hacking
SSH
๐ฎ๐น
Rosh
2025-10-17 10:16:35
(7 months ago)
[10/17/25 12:16:35] SSH: authentication failure
Brute-Force
SSH