๐ฉ๐ช
FD-IX
2026-10-01 00:43:42
(4 days ago)
Brute-force login attack detected by WordPress firewall.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 09:40:09
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:40:01.675057 2026] [security2:error] [pid 24255:tid 24255] [client 45.80.105.249:17715] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||seanevans.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "seanevans.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai_IcRtEEpaaISWLw5GjLAAAABI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 02:49:24
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 22:49:21.446951 2026] [security2:error] [pid 10298:tid 10298] [client 45.80.105.249:54521] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chitsey.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chitsey.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aitzsWnCAHEXVT7GsRq16gAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-11 16:43:03
(3 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 20:31:03
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 16:31:00.394874 2026] [security2:error] [pid 26196:tid 26196] [client 45.80.105.249:12829] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dianogah.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dianogah.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiHghJUBS1_ExyY65DfzkwAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-05-15 10:45:05
(4 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 14:40:46
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 45.80.105.249 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 10:40:42.726159 2026] [security2:error] [pid 14364:tid 14364] [client 45.80.105.249:29065] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lsippell.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lsippell.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agCY6j74vpqJQFya1mTNLAAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2026-04-08 04:12:46
(5 months ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
Anonymous
2025-03-28 13:18:29
(1 year ago)
This IP was involved in an brute force and password spray attack on 2025/03/28 08:10:52
Port Scan
Brute-Force
Exploited Host
Web App Attack
๐จ๐ฟ
lp
2025-03-20 16:26:39
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.80.105.249
2025-03-20T16:10:41+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.80.105.249
2025-03-20T16:10:41+01:00 vpn Access-Reject 'elledge' station: 45.80.105.249 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-03-13 14:54:16
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 45.80.105.249
2025-03-13T15:10:49+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 45.80.105.249
2025-03-13T15:10:49+01:00 vpn Access-Reject 'Maxell' station: 45.80.105.249 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐ฌ๐ง
Steve
2024-04-18 08:41:08
(2 years ago)
Excessive crawling - not obeying robots.txt
Bad Web Bot
๐บ๐ธ
VSM Networks
2024-02-29 05:15:02
(2 years ago)
Credential Stuffing
Brute-Force
๐ฉ๐ช
onkeltom
2023-01-15 06:20:25
(3 years ago)
Unauthorized VPN login attempts
VPN IP
Hacking
๐ฏ๐ต
Nanoniele
2021-07-11 22:02:34
(5 years ago)
2021/07/09 22:53:41; SQL injection; MLType; 2836 3475 F737 9470 vKFK 7Alt; Firefox/12.0
SQL Injection