๐บ๐ธ
TPI-Abuse
2026-07-22 18:24:38
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 14:24:34.099272 2026] [security2:error] [pid 1157200:tid 1157200] [client 122.8.92.181:35629] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zodiacwin.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zodiacwin.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amEK4hwzX0z1mTfHPIED6AAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 18:01:12
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 14:01:04.808114 2026] [security2:error] [pid 24087:tid 24087] [client 122.8.92.181:59575] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||donnysimonton.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "donnysimonton.com"] [uri "/wp-json/wp/v2/users"] [unique_id "al-z4AVXTVA6KSPS9QhucQAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
DRI
2026-07-17 19:15:14
(5 days ago)
Web attack/Malicious activity detected
Web App Attack
๐ซ๐ท
Tilellit.PRO
2026-07-05 04:40:25
(2 weeks ago)
WP Armour Plugin detection
Web Spam
Brute-Force
๐ซ๐ท
Tilellit.PRO
2026-07-02 05:41:10
(2 weeks ago)
tilellit/wp-armour-ban
Hacking
๐ซ๐ท
Tilellit.PRO
2026-06-28 09:31:21
(3 weeks ago)
Fail2Ban banned 122.8.92.181 for security violations in jail wp-armour. Log: 2026/06/28 09:31:20 [er ...
show more
Fail2Ban banned 122.8.92.181 for security violations in jail wp-armour. Log: 2026/06/28 09:31:20 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 122.8.92.181 | Target: wplogin" , client: 122.8.92.181, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐ซ๐ท
Tilellit.PRO
2026-06-27 19:34:15
(3 weeks ago)
Fail2Ban banned 122.8.92.181 for security violations in jail wp-armour. Log: 2026/06/27 19:34:15 [er ...
show more
Fail2Ban banned 122.8.92.181 for security violations in jail wp-armour. Log: 2026/06/27 19:34:15 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 122.8.92.181 | Target: wplogin" , client: 122.8.92.181, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐ซ๐ท
Tilellit.PRO
2026-06-27 06:47:18
(3 weeks ago)
Fail2Ban banned 122.8.92.181 for security violations in jail wp-armour. Log: 2026/06/27 06:47:17 [er ...
show more
Fail2Ban banned 122.8.92.181 for security violations in jail wp-armour. Log: 2026/06/27 06:47:17 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 122.8.92.181 | Target: wplogin" , client: 122.8.92.181, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐ฉ๐ช
stinpriza
2026-06-21 16:24:32
(1 month ago)
Web App Attack
Web App Attack
๐ช๐ธ
Cognisant-Security
2026-05-09 13:29:00
(2 months ago)
Attempts to log in WordPress with invalid credentials
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-01-22 16:20:04
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 11:19:57.993981 2026] [security2:error] [pid 21057:tid 21070] [client 122.8.92.181:60275] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sloveniaflyfishing.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sloveniaflyfishing.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "aXJOLXfoiYnEcrae1v1iowAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-22 15:02:47
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 10:02:43.257248 2026] [security2:error] [pid 5313:tid 5313] [client 122.8.92.181:60535] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||verdeprofundo.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "verdeprofundo.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aXI8EwfVHo0yhxlBC0BUiQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-22 12:56:43
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.92.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 07:56:37.889768 2026] [security2:error] [pid 3126359:tid 3126373] [client 122.8.92.181:57633] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wnsi.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wnsi.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aXIeheRbVYPq1Y4RCaex7gAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack