๐ช๐ธ
librebit
2026-06-15 06:24:20
(1 day ago)
Brute force
Brute-Force
๐บ๐ธ
oralunal
2026-05-19 18:07:44
(3 weeks ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob.fr
2026-04-18 11:30:07
(1 month ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2026-03-03 23:40:02
(3 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 3/3/2026 11:40 pm (UTC-6)
show less
Web App Attack
Bad Web Bot
Web Spam
Hacking
๐บ๐ธ
TPI-Abuse
2026-01-23 05:26:11
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 23 00:26:05.861989 2026] [security2:error] [pid 20456:tid 20456] [client 45.66.208.160:64687] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||allfloridamedia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "allfloridamedia.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aXMGbUcMdnBUQxwgJ9wYCQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-23 02:55:09
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 21:55:03.415303 2026] [security2:error] [pid 25085:tid 25085] [client 45.66.208.160:9761] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nwtree.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nwtree.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aXLjB00kQAK3kIEy4RkSoAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-28 05:20:23
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 00:20:17.128091 2025] [security2:error] [pid 14888:tid 14888] [client 45.66.208.160:61673] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||futurbike.it|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "futurbike.it"] [uri "/wp-json/wp/v2/users/"] [unique_id "aVC-EbbrU0C1-UoqOtXqrgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-12-27 19:10:07
(5 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
octageeks.com
2025-10-07 04:08:18
(8 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-24 01:43:21
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 23 21:43:17.355509 2025] [security2:error] [pid 30448:tid 30448] [client 45.66.208.160:64547] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.floridafrontiersmen.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.floridafrontiersmen.org"] [uri "/"] [unique_id "aNNMtZRT1fVTyfVuwhsEFwAAABg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-09-09 18:10:44
(9 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-03-08 09:29:23
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.66.208.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 08 04:29:16.134005 2025] [security2:error] [pid 4039:tid 4077] [client 45.66.208.160:56249] [client 45.66.208.160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lavonnesells.com"] [uri "/.env"] [unique_id "Z8wN7D7sYLEwzKKmvuyMtQAAAFQ"], referer: https://tasamm.com/about/ggg253.html
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-01-20 02:48:42
(1 year ago)
Ports: *; Direction: 0; Trigger: CT_LIMIT
Brute-Force
SSH
๐จ๐ฟ
lp
2024-11-17 10:26:56
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.160
2024-11-17T11:05:55+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.160
2024-11-17T11:05:55+01:00 vpn Access-Reject '4f' station: 45.66.208.160 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
Anonymous
2023-02-23 06:18:20
(3 years ago)
Miscellaneous hack attempt. Common to Russian hacking toolkit: /cgi-bin/atc
Bad Web Bot
Web App Attack