🇨🇿
Countryman
2026-09-14 00:10:01
(1 day ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
🇩🇪
Ilop
2026-09-13 20:30:32
(1 day ago)
[hp-100] 19 unsolicited packets to honeypot ports 9000 (OCI DShield sensor)
Port Scan
🇩🇪
Ilop
2026-09-12 19:00:54
(2 days ago)
[hp-100] 19 unsolicited packets to honeypot ports 7547 (OCI DShield sensor)
Port Scan
🇨🇿
lp
2026-09-09 18:23:23
(5 days ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.211.253
2026-09-09T19:43:25+02: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.66.211.253
2026-09-09T19:43:25+02:00 vpn Access-Reject '[email protected] ' station: 45.66.211.253 auth-type: - realm: DEFAULT nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇩🇪
Ilop
2026-09-07 23:00:41
(1 week ago)
[hp-100] 19 unsolicited packets to honeypot ports 8000 (OCI DShield sensor)
Port Scan
🇩🇪
Ilop
2026-08-16 00:01:45
(4 weeks ago)
[hp-100] 9 unsolicited packets to honeypot ports 9000 (OCI DShield sensor)
Port Scan
🇨🇭
backslash
2026-08-01 14:27:00
(1 month ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-01 14:02:10
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 10:02:05.973515 2026] [security2:error] [pid 2538837:tid 2538855] [client 45.66.211.253:45349] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wpe.uk.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wpe.uk.com"] [uri "/wp-json/wp/v2/users"] [unique_id "am38Xfi_dBiEkChsJADGxgAAAUM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-31 09:12:27
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 05:12:20.977339 2026] [security2:error] [pid 2405255:tid 2405255] [client 45.66.211.253:26681] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pyxelstudios.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pyxelstudios.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amxm9H-BW3AX738PXPUu3QAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇦
DRI
2026-07-31 04:06:56
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
🇺🇸
TPI-Abuse
2026-07-30 16:06:20
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 12:06:11.989471 2026] [security2:error] [pid 1759688:tid 1759688] [client 45.66.211.253:15929] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||webjemm.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "webjemm.net"] [uri "/wp-json/wp/v2/users"] [unique_id "amt2c_PAYtcPP4jhXisawgAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇦
DRI
2026-07-24 01:58:07
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
🇺🇸
nationaleventpros.com
2026-06-14 22:55:17
(3 months ago)
WordPress login attempt
Brute-Force
🇺🇸
TPI-Abuse
2026-06-04 12:33:09
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 08:33:02.069741 2026] [security2:error] [pid 1432:tid 1432] [client 45.66.211.253:23043] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sahinozalit.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sahinozalit.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiFwfq08FLucnFR151FQ0AAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-30 12:46:04
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.211.253 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 08:45:58.906451 2026] [security2:error] [pid 22885:tid 22885] [client 45.66.211.253:46711] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||laughingthunder.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "laughingthunder.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahrcBpZvEusdyCgSCyJfPgAAACQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack