๐บ๐ธ
TPI-Abuse
2026-07-27 11:59:23
(23 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 07:59:17.605868 2026] [security2:error] [pid 1526058:tid 1526058] [client 45.66.209.156:43845] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||megapct.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "megapct.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amdIFcFZslaErTgHpQE5aAAAAC0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
DRI
2026-07-17 12:37:06
(1 week ago)
Web attack/Malicious activity detected
Web App Attack
๐ฆ๐บ
MAGIC
2025-06-28 00:05:57
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐จ๐ญ
backslash
2025-05-10 04:58:25
(1 year ago)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-05-06 04:59:03
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 00:58:55.563333 2025] [security2:error] [pid 598289:tid 598289] [client 45.66.209.156:19907] [client 45.66.209.156] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Dandridge 4775/Thumbs.db"] [unique_id "aBmXDy85AurItcZZ-rZwKwAAABU"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Dandridge%204775/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-05 10:01:08
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 05 05:00:51.306009 2025] [security2:error] [pid 39288:tid 39288] [client 45.66.209.156:33833] [client 45.66.209.156] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Jefferson/Thumbs.db"] [unique_id "Z8gg01ZTS4LMxDtAI7_qcQAAABM"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Jefferson/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2024-11-27 06:31:45
(1 year ago)
XML RPC Scan Activities
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-14 06:25:10
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 14 01:25:03.280077 2024] [security2:error] [pid 22441:tid 22441] [client 45.66.209.156:13137] [client 45.66.209.156] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lightedpath.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lightedpath.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZzWXv1HGETj8qU5rpI9vAgAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-11-10 11:21:14
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2024-11-09 19:01:57
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 09 14:01:49.389006 2024] [security2:error] [pid 1410434:tid 1410434] [client 45.66.209.156:20365] [client 45.66.209.156] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Grissom-II/Thumbs.db"] [unique_id "Zy-xnYOduaQVDkiuwA9A4gAAABU"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Grissom-II/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
wil.com
2024-09-23 22:59:40
(1 year ago)
GlobalProtect login attempts with user arevels.
VPN IP
Brute-Force
๐ฆ๐บ
MAGIC
2024-06-26 23:10:12
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2024-06-15 23:59:00
(2 years ago)
"Scanning for multiple vulnerable file extensions and wp-login.php xmlrpc.php"
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-05-24 05:42:38
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.209.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 24 01:42:34.760119 2024] [security2:error] [pid 32095] [client 45.66.209.156:38319] [client 45.66.209.156] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Briarwood II/Briarwood II/Stetson Coffee/originals/Thumbs.db"] [unique_id "ZlAoyjrjS-Pd1bNo7iaz5wAAAAw"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Briarwood%20II/Briarwood%20II/Stetson%20Coffee/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-04-16 02:17:30
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH