🇺🇸
TPI-Abuse
2026-03-29 14:36:27
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 10:36:18.745322 2026] [security2:error] [pid 10518:tid 10518] [client 45.80.105.231:48797] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||n-vil.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "n-vil.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ack44knQW9j0ly-15Pe96AAAABo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-29 06:32:19
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 02:32:12.945270 2026] [security2:error] [pid 8036:tid 8036] [client 45.80.105.231:16047] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hotjive.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hotjive.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acjHbFVJ9blLTEuuyq0VIwAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-27 03:27:41
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 23:27:35.099961 2026] [security2:error] [pid 20239:tid 20262] [client 45.80.105.231:56991] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doorways.dk|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doorways.dk"] [uri "/wp-json/wp/v2/users"] [unique_id "acX5J744VNY5IZnZs_R4egAAAIg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
EGP Abuse Dept
2025-09-30 00:23:04
(8 months ago)
forum signup bot
Web Spam
Blog Spam
Web App Attack
Anonymous
2025-09-27 22:02:23
(8 months ago)
Web attack
Bad Web Bot
Web App Attack
🇪🇪
Unwasted
2025-09-01 20:52:46
(9 months ago)
Odoo contact form spam
Web Spam
Blog Spam
🇦🇺
oncord
2025-08-06 01:20:13
(10 months ago)
Form spam
Web Spam
🇦🇺
oncord
2025-07-18 15:51:06
(10 months ago)
Form spam
Web Spam
🇬🇧
Nucuta
2025-07-15 19:42:52
(10 months ago)
2025-07-15 19:42:52 UTC | Kevinnem | dfgsddf222wo@hotmail | https://gglazz.pro/ | 45.80.105.231 | Mo ...
show more
2025-07-15 19:42:52 UTC | Kevinnem | dfgsddf222wo@hotmail | https://gglazz.pro/ | 45.80.105.231 | Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/130.0.0.0 Safari/537.36 | Хотите собрать информацию о пользователе? Этот бот предоставит полный профиль в режиме реального времени .
Воспользуйтесь продвинутые инструменты для анализа публичных записей в соцсетях .
Узнайте место работы или активность через автоматизированный скан с гарантией точности .
<a href=\"https://bog.eog1.pro/\" rel=\"nofollow ugc\">глаз бога проверить</a>
Система функционирует в рамках закона , используя только открытые данные .
Получите расширенный | comment
show less
Blog Spam
🇺🇸
TPI-Abuse
2025-07-13 18:03:13
(10 months ago)
(mod_security) mod_security (id:210730) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.80.105.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 13 14:03:08.486232 2025] [security2:error] [pid 25651:tid 25651] [client 45.80.105.231:64491] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kingstoneproperties.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kingstoneproperties.com"] [uri "/[email protected] "] [unique_id "aHP03GTp8sxZxcIF80iF2QAAAAg"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
oncord
2025-06-21 04:33:19
(11 months ago)
Form spam
Web Spam
🇨🇦
fcosint
2025-01-20 05:00:00
(1 year ago)
"Port scanned as soon as we brought up DNS records"
Port Scan
🇩🇪
F242
2024-08-03 23:45:02
(1 year ago)
Wordpress Login or XMLRPC abuse
Web App Attack
🇨🇦
wil.com
2024-04-02 15:07:13
(2 years ago)
GlobalProtect login attempts with user postmaster.
VPN IP
Brute-Force
🇺🇸
VSM Networks
2024-02-29 05:08:50
(2 years ago)
Credential Stuffing
Brute-Force