๐ฎ๐น
VHosting
2026-08-26 05:50:05
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-25 20:28:23
(1 week ago)
[25/Aug/2026:23:28:22 +0300] -- 85.203.45.207 Ban reason: User-Agent Go-http-client
Bad Web Bot
Web App Attack
๐ซ๐ท
Lunix
2026-08-25 19:30:41
(1 week ago)
Brute-Force
Web App Attack
๐ฒ๐ฝ
Centynova Corp.
2026-07-06 23:41:02
(1 month ago)
Blocked by threat detection service. Centynova Security [Intento de acceso no autorizado y fuerza br ...
show more
Blocked by threat detection service. Centynova Security [Intento de acceso no autorizado y fuerza bruta contra un sitios]
show less
Web App Attack
๐บ๐ธ
mnsf
2026-06-20 05:05:06
(2 months ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-06-16 11:41:17
(2 months ago)
WordPress XMLRPC Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
rdpguard.com
2026-04-17 06:44:36
(4 months ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ช๐ธ
masterguru
2026-04-17 05:19:18
(4 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-122)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-13 11:51:15
(4 months ago)
(mod_security) mod_security (id:234930) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:234930) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 07:51:08.047946 2026] [security2:error] [pid 3830775:tid 3830775] [client 85.203.45.207:65343] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\/lib\\\\/php\\\\/connector\\\\.minimal\\\\.php$" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/27_Apps_WPPlugin.conf"] [line "6778"] [id "234930"] [rev "2"] [msg "COMODO WAF: File upload vulnerability in the file manager plugin before 6.9 for WordPress (CVE-2020-25213)||glassclublake.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WPPlugin"] [hostname "glassclublake.com"] [uri "/wp-content/plugins/wp-file-manager/lib/php/connector.minimal.php"] [unique_id "adzYrG2hBu05lJ3Ql3ES0gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-04-13 06:06:04
(4 months ago)
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
๐บ๐ธ
mnsf
2026-04-12 23:05:07
(4 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-13 22:03:54
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 13 18:03:46.237511 2026] [security2:error] [pid 27000:tid 27000] [client 85.203.45.207:35505] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||medicalexchangeasinc.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "medicalexchangeasinc.com"] [uri "/old/dump.sql"] [unique_id "abSJwv9uKdsx6RhCg9ynJQAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2026-03-11 10:45:36
(5 months ago)
/restore/config.json
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-08 23:43:59
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 08 19:43:52.773792 2026] [security2:error] [pid 26882:tid 26882] [client 85.203.45.207:58267] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||uppermotradingco.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "uppermotradingco.com"] [uri "/backup/mysql.sql"] [unique_id "aa4JuIyWP3I2bswtLPxusQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-04 14:10:40
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 85.203.45.207 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 04 09:10:33.325705 2026] [security2:error] [pid 18566:tid 18566] [client 85.203.45.207:45479] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||lusocleaningservice.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "lusocleaningservice.com"] [uri "/backup/www.sql"] [unique_id "aag9WQpLq4spmFMrUsrDEQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack