Anonymous
2026-05-30 04:46:07
(5 days ago)
Failed Wordpress Logins
Web App Attack
Anonymous
2026-05-24 18:00:05
(1 week ago)
Failed Wordpress Logins
Web App Attack
Anonymous
2026-05-22 02:46:07
(1 week ago)
Failed Wordpress Logins
Web App Attack
Anonymous
2026-05-20 17:46:10
(2 weeks ago)
Failed Wordpress Logins
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-19 09:21:25
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 05:21:21.079266 2026] [security2:error] [pid 13366:tid 13366] [client 104.196.49.63:61339] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||qed-consulting.co|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "qed-consulting.co"] [uri "/wp-json/wp/v2/users/"] [unique_id "agwrkVURn0RnY-k1pY6sAQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
RodGel
2026-05-19 09:20:58
(2 weeks ago)
High AbuseIPDB score: 91
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-19 09:04:18
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 05:04:15.262452 2026] [security2:error] [pid 12908:tid 12908] [client 104.196.49.63:65293] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||protection4allsecurity.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "protection4allsecurity.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "agwnj31-co0jZnIPELahmQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-05-19 09:03:19
(2 weeks ago)
Scraping with a high error ratio and request rate
Bad Web Bot
Anonymous
2026-05-19 08:59:33
(2 weeks ago)
Bad Web Bot
Web App Attack
Anonymous
2026-05-19 08:48:45
(2 weeks ago)
Malicious Probing/Bad Request
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-19 08:46:21
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 04:46:13.469404 2026] [security2:error] [pid 26895:tid 26895] [client 104.196.49.63:57203] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.prcomputersolutions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.prcomputersolutions.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "agwjVXEWQrlMF8nywC7TJQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-05-19 08:27:45
(2 weeks ago)
(xmlrpc) Apache: Failed xmlrpc access from 104.196.49.63 (US/United States/63.49.196.104.bc.googleus ...
show more
(xmlrpc) Apache: Failed xmlrpc access from 104.196.49.63 (US/United States/63.49.196.104.bc.googleusercontent.com): 10 in the last 3600 secs (0-201)
show less
Hacking
๐ฎ๐น
VHosting
2026-05-19 08:25:04
(2 weeks ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-19 08:20:31
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 104.196.49.63 (63.49.196.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 04:20:26.287501 2026] [security2:error] [pid 31548:tid 31548] [client 104.196.49.63:50478] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pixelspective.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pixelspective.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "agwdSvH5yZ-24gYxNISAJQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-05-19 08:17:12
(2 weeks ago)
[redacted] 104.196.49.63 - - [19/May/2026:09:17:09 +0100] "GET //wp-includes/[redacted] HTTP/1.1" 30 ...
show more
[redacted] 104.196.49.63 - - [19/May/2026:09:17:09 +0100] "GET //wp-includes/[redacted] HTTP/1.1" 302 1539 0/221893 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36" [redacted] 104.196.49.63 - - [19/May/2026:09:17:09 +0100] "GET //[redacted]?rsd HTTP/1.1" 302 5268 0/175529 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
show less
Bad Web Bot
Web App Attack