|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 18:19:03.579922 2026] [security2:error] [pid 13779:tid 13796] [client 196.40.97.128:53474] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.giere.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.giere.us"] [uri "/wp-json/wp/v2/users"] [unique_id "aiyF1_H4erGtdvIuhVFErAAAAU0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 13:18:32.746437 2026] [security2:error] [pid 26304:tid 26304] [client 196.40.97.128:60586] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rochesterhistorical.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rochesterhistorical.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agYD6G9Jn9vvH34IsZaP7wAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 12:48:34.458421 2026] [security2:error] [pid 30843:tid 30843] [client 196.40.97.128:41386] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mosheimlib.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mosheimlib.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agX84vUaDHCeqnpq7uMr5wAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 12:00:34.633139 2026] [security2:error] [pid 17315:tid 17315] [client 196.40.97.128:54454] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||intothebigempty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "intothebigempty.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agXxopnS5xYCsI4RFg_zkAAAAB8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 11:21:46.224171 2026] [security2:error] [pid 18810:tid 18810] [client 196.40.97.128:56324] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.hawaiireservations.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.hawaiireservations.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agXoitekt_NcADM0lpC9hAAAAB8"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ซ๐ท
bazter.pro
|
|
Fail2Ban: plesk-bot-aggressive - 15 failures
|
Port Scan
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
mnsf
|
|
Too many Status 40X (12)
Scanning/Probing (12)
|
Brute-Force
Web App Attack
|
|
|
๐ฆ๐บ
paulshipley.com.au
|
|
paulshipley.info:443 196.40.97.128 - - [14/May/2026:22:22:44 +1000] "GET /?author=1 HTTP/1.1" 404 21 ...
show more
paulshipley.info:443 196.40.97.128 - - [14/May/2026:22:22:44 +1000] "GET /?author=1 HTTP/1.1" 404 21883 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:41.0) Gecko/20100101 Firefox/41.0"
...
show less
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 196.40.97.128 (dedi118.cpt1.host-h.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 07:49:20.282813 2026] [security2:error] [pid 20616:tid 20636] [client 196.40.97.128:51496] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||frannykingsmith.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "frannykingsmith.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agW2wJ3-gdaVSPNFKudYtAAAAJE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|