🇧🇪
cmbplf
2026-09-09 11:33:59
(23 hours ago)
1.819 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
🇨🇭
SOC [GOLINE SA]
2026-09-02 16:26:16
(1 week ago)
[RoutePulse | 2026-09-02T16:26:16Z | RTBH-INJECTED]
ATTACK CLASS: vpn_bruteforce
SOURCE: 45.3.53.22
...
show more
[RoutePulse | 2026-09-02T16:26:16Z | RTBH-INJECTED]
ATTACK CLASS: vpn_bruteforce
SOURCE: 45.3.53.22
EVIDENCE: Cisco VPN RA Brute force on Cisco FTDv — distributed attack (6 attempts/15min)
DETECTION: Conviction Engine SPRT + 14-detector ML stack (6-model weighted ensemble) + 5-pillar threat scoring
ACTION: BGP null route injected at RoutePulse network edge
show less
Brute-Force
Hacking
🇳🇱
i-turnradio.nl
2026-02-28 11:58:36
(6 months ago)
2026-02-28 12:58:36 (CET) ~ Blocked by abusescan risk assessment
Web App Attack
🇺🇸
TPI-Abuse
2026-02-19 04:37:56
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 23:37:51.289915 2026] [security2:error] [pid 758:tid 758] [client 45.3.53.22:25193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "knowledgepreservationalliance.com"] [uri "/.env.staging"] [unique_id "aZaTnz26efnfXyH9sDL2mAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-19 03:01:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:00:54.404647 2026] [security2:error] [pid 28451:tid 28451] [client 45.3.53.22:54861] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kennedimoore.click"] [uri "/frontend/.env"] [unique_id "aZZ85i4eZKU3v6W1tfSCUAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-19 02:28:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 21:28:32.715130 2026] [security2:error] [pid 15857:tid 15857] [client 45.3.53.22:56663] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kbalan.com"] [uri "/wp/.git/config"] [unique_id "aZZ1UJX3YOzaQR-05iweMQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-02-18 20:31:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 15:31:18.243187 2026] [security2:error] [pid 1410566:tid 1410574] [client 45.3.53.22:19467] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tributetoalice.com"] [uri "/.env.staging"] [unique_id "aZYhlod2z3vZtzTY7F2TPwAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
myagent.site
2026-02-18 12:45:39
(6 months ago)
Blocking for trying to access an exploit file: /v2/.git/config
Hacking
🇦🇺
MAGIC
2025-12-26 01:15:39
(8 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇺🇸
oncord
2025-12-20 04:48:56
(8 months ago)
Form spam
Web Spam
🇱🇻
garmtech.com
2025-12-04 19:57:19
(9 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 21-57.45.3.53.22.web-spammers. ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 21-57.45.3.53.22.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
🇳🇱
homeshowdomain.nl
2025-11-25 23:03:51
(9 months ago)
Auto-ban: >3000 req/min op 2025-11-25
Hacking
Web App Attack
SSH
🇺🇸
TPI-Abuse
2025-11-25 07:23:04
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:23:00.348661 2025] [security2:error] [pid 2027408:tid 2027418] [client 45.3.53.22:60991] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.cookmanufacturinggroup.com"] [uri "/.env"] [unique_id "aSVZVH0JlhnQTGLFtsgpAwAAAMQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-25 01:52:54
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.53.22 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:52:46.585723 2025] [security2:error] [pid 12030:tid 12030] [client 45.3.53.22:13779] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "countylockup.org"] [uri "/.env"] [unique_id "aSUL7huNOcsIbRKN-FWHuAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
nowyouknow
2025-11-24 01:47:08
(9 months ago)
(From [email protected] ) Are you searching for a job that can be done right away? If so, cou ...
show more
(From [email protected] ) Are you searching for a job that can be done right away? If so, countless businesses are hiring website chat support agents - no experience is needed, as full training will be provided.
Click here to complete your application if you are interested.
-----> https://themoneyfromhome.com
show less
Phishing
Web Spam