πΊπΈ
TPI-Abuse
2025-09-07 16:40:56
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 07 12:40:51.240870 2025] [security2:error] [pid 4004:tid 4004] [client 104.248.225.169:48604] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jolankagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jolankagroup.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aL21k-YLt4-ILUCy8x1GzAAAAAc"], referer: https://jolankagroup.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-09-03 10:37:27
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 03 06:37:19.302551 2025] [security2:error] [pid 10935:tid 11019] [client 104.248.225.169:42274] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mindgardens.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mindgardens.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aLgaX-M-89e795CLrA19FQAAAdc"], referer: https://mindgardens.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
trading1617.internet-box.ch
2025-08-31 09:43:00
(1 year ago)
Brute-Force
π¦πΉ
CTK
2025-08-30 21:12:12
(1 year ago)
RDP Brute-Force (Grieskirchen RZ2)
Brute-Force
π¦πΉ
CTK
2025-08-30 20:35:09
(1 year ago)
Customer Site (WELS SM)
Brute-Force
π¨π
trading1617.internet-box.ch
2025-08-29 07:15:43
(1 year ago)
Brute-Force
π¨π
trading1617.internet-box.ch
2025-08-26 19:05:19
(1 year ago)
Brute-Force
π³π΄
pcin.no(security)
2025-08-17 18:38:59
(1 year ago)
Failed password for Administrator : Attempts: 1
Brute-Force
πΊπΈ
TPI-Abuse
2025-08-09 13:55:39
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 09 09:55:36.078113 2025] [security2:error] [pid 19826:tid 19826] [client 104.248.225.169:33524] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eye7graphics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eye7graphics.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aJdTWHNTsD0g96OY1b1yhgAAAAM"], referer: https://eye7graphics.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-08-07 21:53:34
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 104.248.225.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 07 17:53:27.754858 2025] [security2:error] [pid 18644:tid 18644] [client 104.248.225.169:46188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||staben.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "staben.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aJUgV4TREGMpSZuaT_VRkAAAABA"], referer: https://staben.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
BSG Webmaster
2025-04-22 07:35:04
(1 year ago)
Port scanning (Port 8000)
Port Scan
Hacking
πΊπΈ
RAP
2025-04-22 01:40:38
(1 year ago)
2025-04-22 01:40:38 UTC Unauthorized activity to TCP port 8080. Web App
Port Scan
Web App Attack
πΊπΈ
MPL
2025-04-22 01:02:16
(1 year ago)
tcp/8001
Port Scan