๐บ๐ธ
TPI-Abuse
2026-08-31 05:50:56
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 01:50:50.274487 2026] [security2:error] [pid 9891:tid 9891] [client 103.190.47.60:39456] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cornerstonecharitablescholarshiptrust.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cornerstonecharitablescholarshiptrust.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apUWOk6LqcG_wSUnIR8GaAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
thesimonmanuel
2026-08-31 05:48:18
(2 days ago)
103.190.47.60 - 19830pwpadmin [31/Aug/2026:11:18:18 +0530] "GET /wp-json/wp/v2/users/me HTTP/1.1" 40 ...
show more
103.190.47.60 - 19830pwpadmin [31/Aug/2026:11:18:18 +0530] "GET /wp-json/wp/v2/users/me HTTP/1.1" 401 107 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
show less
Web App Attack
Anonymous
2026-08-31 05:44:03
(2 days ago)
Bot / scanning and/or hacking attempts: POST /wp-login.php HTTP/2.0, [2/2] done, GET /wp-login.php H ...
show more
Bot / scanning and/or hacking attempts: POST /wp-login.php HTTP/2.0, [2/2] done, GET /wp-login.php HTTP/2.0
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 05:30:31
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 01:30:22.384882 2026] [security2:error] [pid 31315:tid 31315] [client 103.190.47.60:41708] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stoughtonpipeandwelding.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stoughtonpipeandwelding.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apURbs3nvCCobtx6uWS3WwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 04:27:22
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 00:27:14.777091 2026] [security2:error] [pid 7932:tid 7932] [client 103.190.47.60:47056] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thewhispertwins.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thewhispertwins.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apUCoo8s26oo9DhxGNV3cgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-31 04:16:49
(2 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 03:44:18
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 23:44:13.187470 2026] [security2:error] [pid 13123:tid 13123] [client 103.190.47.60:44004] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||paleopathologist.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "paleopathologist.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apT4jS3DzK4HZ6bcSLO1bgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 03:15:30
(2 days ago)
Web attack blocked by Wordfence on limburgsekunstkring.nl (1 hit). Reported by CRMON.
Web App Attack
๐ฆ๐บ
QT
2026-08-31 03:07:43
(2 days ago)
Unauthorised WordPress admin login attempted at 2026-08-31 13:07:37 +1000
Web App Attack
๐ฉ๐ช
stinpriza
2026-08-31 01:19:19
(2 days ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 01:12:58
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 21:12:50.181257 2026] [security2:error] [pid 31717:tid 31717] [client 103.190.47.60:36632] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.sprayrealty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.sprayrealty.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apTVEovDK37shyIcL5sdXgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-08-30 23:03:25
(2 days ago)
(wordpress) Failed wordpress login from 103.190.47.60 (ID/Indonesia/-): (CF_ENABLE)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-30 22:30:28
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 18:30:22.141872 2026] [security2:error] [pid 4461:tid 4461] [client 103.190.47.60:56286] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rochesterhistorical.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rochesterhistorical.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apSu_hRapRhGXP-28WEo1QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 21:59:42
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 103.190.47.60 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 17:59:35.076651 2026] [security2:error] [pid 30751:tid 30751] [client 103.190.47.60:57350] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bostonmarathonstories.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bostonmarathonstories.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apSnx7AiHOM-VqJoruBrjgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-08-30 21:54:03
(2 days ago)
Wordfence waf block on advocates4change
Web App Attack