๐บ๐ธ
TPI-Abuse
2026-06-20 06:26:49
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 20 02:26:45.604973 2026] [security2:error] [pid 1645:tid 1645] [client 45.66.208.123:22591] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chapa.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chapa.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajYypSRPCRU_CU_ec4KP9QAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 13:45:36
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 09:45:32.885821 2026] [security2:error] [pid 12067:tid 12067] [client 45.66.208.123:44143] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||drrw.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "drrw.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajFTfMXZB4_mJpqVlbyUBgAAAAc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-14 19:48:02
(1 week ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-08 22:48:25
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 18:48:17.134803 2026] [security2:error] [pid 17070:tid 17070] [client 45.66.208.123:62499] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||secuencia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "secuencia.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aidGsZeouJ0VKC-xbPWfAwAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 23:15:27
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 19:15:20.788461 2026] [security2:error] [pid 22060:tid 22060] [client 45.66.208.123:61821] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||emelecsrl.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "emelecsrl.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ag5AiIth1SsJyHJ531HnJQAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-20 14:24:02
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-05-20 04:59:51
(1 month ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-04-14 06:09:32
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 14 02:09:28.005768 2026] [security2:error] [pid 3096907:tid 3096907] [client 45.66.208.123:38499] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||grupoimaginarte.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "grupoimaginarte.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ad3aGE8SsppiRJZa-n1ONQAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-11 00:01:45
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 20:01:39.887093 2026] [security2:error] [pid 630367:tid 630367] [client 45.66.208.123:59343] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||humbliaslaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "humbliaslaw.com"] [uri "/wp-json/wp/v2/users"] [unique_id "admPYwOjZpIpdEvnB4Zx0AAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-08-12 21:23:12
(10 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.123
2025-08-12T22:03:24+02: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.123
2025-08-12T22:03:24+02:00 vpn Access-Reject 'dwhite' station: 45.66.208.123 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-04-28 01:33:35
(1 year ago)
2025-04-27 17:08:07 /+CSCOE+/logon.html
Web App Attack
๐จ๐ณ
ThreatBook.io
2025-04-20 01:46:32
(1 year ago)
2025-04-19 08:27:51 /+CSCOE+/logon.html
Web App Attack
๐จ๐ฆ
wil.com
2025-04-01 10:30:10
(1 year ago)
GlobalProtect login attempts with user aawulonu.
VPN IP
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-03-29 10:35:57
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 29 06:35:51.462972 2025] [security2:error] [pid 1094750:tid 1094750] [client 45.66.208.123:49857] [client 45.66.208.123] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||braintechsoftwaresolutions.com|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "braintechsoftwaresolutions.com"] [uri "/wp-content/plugins/all-in-one-seo-pack/classes/aiosp.class.php"] [unique_id "Z-fNBzBRpKWFm56xZXOztwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 11:48:51
(1 year ago)
(mod_security) mod_security (id:211120) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211120) triggered by 45.66.208.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 07:48:43.159173 2025] [security2:error] [pid 1599:tid 1599] [client 45.66.208.123:13519] [client 45.66.208.123] ModSecurity: Access denied with code 403 (phase 2). Match of "endsWith /modules/paypal/express_checkout/payment.php" against "REQUEST_FILENAME" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "29"] [id "211120"] [rev "12"] [msg "COMODO WAF: Remote File Inclusion Attack||billwegener.net|F|2"] [data "Matched Data: http://adguard.digital/payload/index.php? found within REQUEST_FILENAME: /wp-content/plugins/wp-super-cache/js/cache-loader.php"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "billwegener.net"] [uri "/wp-content/plugins/wp-super-cache/js/cache-loader.php"] [unique_id "Z-Ppm1tfCBosIFvOMXGLTwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack