๐จ๐ญ
Origon
2026-05-27 20:51:09
(2 weeks ago)
http-bad-user-agent - IP: 45.66.209.83 - time="2026-05-27T22:51:09+02:00" level=info msg="(555f66b4 ...
show more
http-bad-user-agent - IP: 45.66.209.83 - time="2026-05-27T22:51:09+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-bad-user-agent by ip 45.66.209.83 (RU/35830) : 4h ban on Ip 45.66.209.83" module=db
show less
Bad Web Bot
๐ช๐ธ
tutaim.com
2026-05-15 10:00:06
(1 month ago)
โ [15/05/26] This IP has been detected performing multiple attacks on websites (3 attempts blocked). ...
show more
โ [15/05/26] This IP has been detected performing multiple attacks on websites (3 attempts blocked). Potential malicious activity.
show less
Brute-Force
SSH
Web App Attack
FTP Brute-Force
๐ซ๐ท
Yepngo
2026-04-04 12:38:30
(2 months ago)
45.66.209.83 - - [04/Apr/2026:14:23:36 +0200] "POST /wp-login.php HTTP/2.0" 200 12085 "https://yepng ...
show more
45.66.209.83 - - [04/Apr/2026:14:23:36 +0200] "POST /wp-login.php HTTP/2.0" 200 12085 "https://yepngo.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
45.66.209.83 - - [04/Apr/2026:14:38:30 +0200] "POST /wp-login.php HTTP/2.0" 200 12080 "https://yepngo.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
kjaerulff
2026-03-29 14:49:01
(2 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐ฌ๐ง
catalink.com
2026-03-13 19:56:10
(3 months ago)
Brute forcing Wordpress login
Exploited Host
Web App Attack
๐ฉ๐ช
kjaerulff
2026-03-10 09:47:35
(3 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-22 22:14:24
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 17:14:21.116299 2026] [security2:error] [pid 1562:tid 1562] [client 45.66.209.83:17071] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wwfstudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wwfstudio.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "aXKhPR6o-XPHyqYnB4gV6gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-22 15:32:26
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 10:32:20.106356 2026] [security2:error] [pid 14700:tid 14700] [client 45.66.209.83:47803] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||artigelisim.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "artigelisim.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aXJDBADgOJ-7FsFu33DIygAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 13:06:08
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฉ๐ช
HandyTreff.de
2025-12-28 23:10:55
(5 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -22.152 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -22.152 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Sa
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-07 07:32:38
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Nov 07 02:32:33.373690 2025] [security2:error] [pid 19245:tid 19245] [client 45.66.209.83:21319] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||staben.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "staben.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aQ2gkQZqrUdmN-KC0v9zLAAAABI"], referer: https://staben.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-06 01:15:56
(7 months ago)
Forum/form spam
Web Spam
๐ฌ๐ง
relianoid.com
2025-09-15 10:58:40
(9 months ago)
POST Abuse detected by Relianoid OSS Load Balancer - relianoid.com
Web Spam
๐บ๐ธ
TPI-Abuse
2025-09-06 20:15:55
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.66.209.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 16:15:51.347549 2025] [security2:error] [pid 3087:tid 3087] [client 45.66.209.83:34749] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Dalton II/Thumbs.db"] [unique_id "aLyWd5mme6XzUYfpbunt3gAAAAg"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Dalton%20II/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-06-19 05:15:08
(11 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot