๐บ๐ธ
TPI-Abuse
2026-05-20 15:34:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.80.107.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.80.107.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 11:34:34.595992 2026] [security2:error] [pid 2937:tid 2937] [client 45.80.107.45:35305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "site.ablogisticsgroup.com"] [uri "/.wp-config.php.swp"] [unique_id "ag3UilZuN6WEEowB4gBT-AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 12:54:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 45.80.107.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.80.107.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 08:54:52.300589 2026] [security2:error] [pid 3215:tid 3215] [client 45.80.107.45:29333] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jbernsteinpc.com"] [uri "/wp-config.php.save"] [unique_id "ag2vHJSYCQXif35NMidveQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-18 07:52:22
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 45.80.107.45 (IL/Israel/-)
SQL Injection
๐ซ๐ท
tilellit.pro
2026-04-01 00:43:28
(2 months ago)
Fail2Ban banned 45.80.107.45 for security violations in jail wp-armour. Log: 2026/04/01 00:43:27 [er ...
show more
Fail2Ban banned 45.80.107.45 for security violations in jail wp-armour. Log: 2026/04/01 00:43:27 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 45.80.107.45 | Target: wplogin" , client: 45.80.107.45, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://espsformacion.com/wp-login.php"
...
show less
Web Spam
๐บ๐ธ
TPI-Abuse
2026-03-11 04:09:09
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 45.80.107.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 45.80.107.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 11 00:08:58.113657 2026] [security2:error] [pid 15597:tid 15597] [client 45.80.107.45:40409] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.airei.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.airei.com"] [uri "/"] [unique_id "abDq2p-qFOHS8bZAAGijKwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:16
(5 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-10-09 08:31:05
(7 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-06-17 15:52:12
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-05-08 04:14:53
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-02-28 15:25:53
(1 year ago)
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
๐ธ๐ฌ
oncord
2024-10-20 10:29:34
(1 year ago)
Form spam
Web Spam
๐ท๐บ
sms.ru
2024-09-24 09:35:07
(1 year ago)
SMS pumping attack from foreign country
DDoS Attack
๐ต๐ฑ
sefinek.net
2024-08-29 22:12:22
(1 year ago)
This IP address has been identified as generating artificial traffic on websites following the purch ...
show more
This IP address has been identified as generating artificial traffic on websites following the purchase of a specific service from a Fiverr gig. User-Agent and Referrer: Mozilla/5.0 (iPad; CPU OS 16_6_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/118.0.5993.96 Mobile/15E148 Safari/604.1 - en-US - -
show less
Bad Web Bot
๐ฌ๐ง
essinghigh
2024-04-23 02:46:16
(2 years ago)
1713840375 # Service_probe # SIGNATURE_SEND # source_ip:45.80.107.45 # dst_port:5607
...
Port Scan
๐ฌ๐ง
essinghigh
2024-04-22 11:17:21
(2 years ago)
1713784639 # Service_probe # SIGNATURE_SEND # source_ip:45.80.107.45 # dst_port:8239
...
Port Scan