๐ฉ๐ช
kjaerulff
2026-05-20 07:31:42
(1 month ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 02:50:41
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 88.218.45.89 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 88.218.45.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 22:50:37.747389 2026] [security2:error] [pid 7615:tid 7615] [client 88.218.45.89:34165] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||geckoturner.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "geckoturner.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aby1_e2Lha0gROUymcfeYAAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oncord
2026-01-30 05:19:30
(4 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-01-27 16:57:02
(4 months ago)
(mod_security) mod_security (id:210350) triggered by 88.218.45.89 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 88.218.45.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 27 11:56:54.230572 2026] [security2:error] [pid 31525:tid 31525] [client 88.218.45.89:36749] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||agrizel.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "agrizel.com"] [uri "/aboutus"] [unique_id "aXjuVvHTWXYid62OCmYzrQAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2025-12-14 01:20:32
(6 months ago)
Form spam
Web Spam
๐บ๐ธ
EGP Abuse Dept
2025-12-07 08:49:03
(6 months ago)
forum signup bot
Web Spam
Blog Spam
Web App Attack
๐บ๐ธ
tropicalidad.be
2025-11-10 00:22:44
(7 months ago)
blog comment/referrer spam
Web Spam
๐ฆ๐บ
oncord
2025-11-07 17:25:14
(7 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2025-11-05 09:13:51
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 88.218.45.89 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 88.218.45.89 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 05 04:13:43.924379 2025] [security2:error] [pid 7734:tid 7799] [client 88.218.45.89:17333] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||adventuresdotcom.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "adventuresdotcom.com"] [uri "/mailto:[email protected] "] [unique_id "aQsVRyXB9MX8kb0cgRPT0AAAAMQ"], referer: https://adventuresdotcom.com/contact.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
exxos
2025-11-03 10:31:49
(7 months ago)
Traversal attacks
Hacking
๐ณ๐ฑ
exxos
2025-11-03 10:23:34
(7 months ago)
Traversal attacks
Hacking
๐ฑ๐ป
garmtech.com
2025-10-28 00:09:13
(7 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 02-09.88.218.45.89.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 02-09.88.218.45.89.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2025-10-09 20:59:39
(8 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 23-59.88.218.45.89.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 23-59.88.218.45.89.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2025-10-07 09:20:01
(8 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 12-20.88.218.45.89.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 12-20.88.218.45.89.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฆ๐บ
oncord
2025-09-26 05:02:35
(8 months ago)
Form spam
Web Spam