๐บ๐ธ
TPI-Abuse
2026-08-29 06:19:31
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:19:25.859906 2026] [security2:error] [pid 8916:tid 8916] [client 118.71.62.248:42538] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stellabluesales.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stellabluesales.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apJ57cQPbMXAikOvm6-1kwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 05:44:21
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:44:13.512765 2026] [security2:error] [pid 8452:tid 8452] [client 118.71.62.248:39244] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||frelsburg.com.cajunfriedturkey.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "frelsburg.com.cajunfriedturkey.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apJxrWUS9XqC-1ZcnTMBNQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 04:46:25
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:46:16.956953 2026] [security2:error] [pid 29700:tid 29700] [client 118.71.62.248:42324] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eaglejames.disio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eaglejames.disio.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apJkGIfubDgPDIhATpgapwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
ptlab
2026-08-29 04:45:33
(4 hours ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 04:31:41
(5 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 118.71.62.248 (VN/Vietnam/ip-address-pool-xxx ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 118.71.62.248 (VN/Vietnam/ip-address-pool-xxx.fpt.vn): 1 in the last 3600 secs (0-196)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-29 04:25:14
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:25:09.896637 2026] [security2:error] [pid 28101:tid 28101] [client 118.71.62.248:51846] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||paulshorrock.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "paulshorrock.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apJfJf-6gQRby90jpn2CWwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 04:04:05
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:04:01.260624 2026] [security2:error] [pid 24807:tid 24807] [client 118.71.62.248:56212] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||madisonjazzorchestra.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "madisonjazzorchestra.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apJaMTsWL3vr4j3wWyScYAAAABQ"], referer: https://madisonjazzorchestra.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-29 03:50:14
(5 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 118.71.62.248 (VN/Vietnam/ip-address-pool-xxx ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 118.71.62.248 (VN/Vietnam/ip-address-pool-xxx.fpt.vn): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
ghostwarriors
2026-08-29 03:50:12
(5 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 03:47:15
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:47:10.495768 2026] [security2:error] [pid 2899:tid 2899] [client 118.71.62.248:33730] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gardner.farm.brazilianbottom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gardner.farm.brazilianbottom.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apJWPj_uHUU2iEmgnWaCvAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 03:32:01
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:31:57.494133 2026] [security2:error] [pid 2195:tid 2195] [client 118.71.62.248:40860] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nidusmbt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nidusmbt.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apJSrZPlFkEhu37BXKjTNQAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 03:13:44
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 118.71.62.248 (ip-address-pool-xxx.fpt.vn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:13:32.383901 2026] [security2:error] [pid 1712:tid 1712] [client 118.71.62.248:52900] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigholegolf.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigholegolf.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apJOXHVOflzi2bBKuP5caAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-29 03:05:04
(6 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack