๐ง๐ช
Saec
2026-07-06 17:38:09
(1 month ago)
Jarvis auto-ban: CF honeypot path /wp-login.php (1ร on saec.me)
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-02 16:28:17
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 45.66.208.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 45.66.208.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 12:28:10.251845 2026] [security2:error] [pid 20911:tid 20911] [client 45.66.208.88:29815] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||iclog.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "iclog.us"] [uri "/"] [unique_id "akaRmmpB9B5UlPwF-p08pgAAABc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 20:08:22
(3 months ago)
(mod_security) mod_security (id:211030) triggered by 45.66.208.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:211030) triggered by 45.66.208.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 16:08:14.185192 2026] [security2:error] [pid 20188:tid 20188] [client 45.66.208.88:29035] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at ARGS. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/08_Global_Other.conf"] [line "17"] [id "211030"] [rev "3"] [msg "COMODO WAF: LDAP Injection Attack||www.genesis-castle.com|F|2"] [data "Matched Data: (%'%~%'%|%|%( found within ARGS: 0"] [severity "CRITICAL"] [tag "CWAF"] [tag "Other"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agTaLpE2nbzLrIZN84AlTAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-05-13 06:21:55
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.88
2025-05-13T07:22:23+02:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.88
2025-05-13T07:22:23+02:00 vpn Access-Reject 'signing' station: 45.66.208.88 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐บ๐ธ
hostseries
2025-04-03 13:18:26
(1 year ago)
Brute-force cPanel Services
Brute-Force
Anonymous
2025-03-28 11:53:08
(1 year ago)
This IP was involved in an brute force and password spray attack on 2025/03/28 06:49:20
Port Scan
Brute-Force
Exploited Host
Web App Attack
๐จ๐ฆ
wil.com
2025-03-28 08:08:27
(1 year ago)
GlobalProtect login attempts with user smcleod.
VPN IP
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-02-09 17:49:41
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.66.208.88 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.66.208.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 09 12:49:36.792612 2025] [security2:error] [pid 2450148:tid 2450148] [client 45.66.208.88:13495] [client 45.66.208.88] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amgstone.38floorsupply.com"] [uri "/.env"] [unique_id "Z6jqsKjRv1K04gBDweZRWQAAAAc"], referer: https://a00047.tiiny.site/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-02-07 10:22:26
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.88
2025-02-07T10:46:52+01:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.88
2025-02-07T10:46:52+01:00 vpn Access-Reject 'Aboves' station: 45.66.208.88 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-02-04 22:21:46
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.88
2025-02-04T22:42:09+01:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.208.88
2025-02-04T22:42:09+01:00 vpn Access-Reject 'realtime' station: 45.66.208.88 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐ธ๐ช
OnTheEdge
2025-02-02 12:43:54
(1 year ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
Anonymous
2025-01-23 12:56:17
(1 year ago)
Brute-Force
๐ฉ๐ช
trbs
2022-06-17 00:26:37
(4 years ago)
04,1-06/06 [bc10/m188] 0,00 PostRequest-Spammer scoring: nairobi
Phishing
Web Spam
๐บ๐ธ
gu-alvareza
2022-06-02 14:21:49
(4 years ago)
WordPress.xmlrpc.Pingback.DoS
DDoS Attack
๐ต๐น
sourmood
2022-03-04 21:37:03
(4 years ago)
Automated report: Participated in L7 DDoS Attack.
DDoS Attack