🇺🇸
nationaleventpros.com
2026-09-05 02:42:29
(13 hours ago)
WordPress login attempt
Brute-Force
🇺🇸
TPI-Abuse
2026-09-05 01:44:29
(14 hours ago)
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 21:44:23.465070 2026] [security2:error] [pid 1072:tid 1072] [client 122.8.94.83:26909] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kwtlaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kwtlaw.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aptz9-JtssHcYzppsEbDYgAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:29:38
(19 hours ago)
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:29:32.905842 2026] [security2:error] [pid 8025:tid 8025] [client 122.8.94.83:32091] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dmasoftlab.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dmasoftlab.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aps4PNUhznMcO3e5puZRHAAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
nationaleventpros.com
2026-09-03 00:38:22
(2 days ago)
WordPress login attempt
Brute-Force
🇺🇸
TPI-Abuse
2026-08-31 23:18:09
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 19:18:00.864069 2026] [security2:error] [pid 32230:tid 32230] [client 122.8.94.83:19479] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||callalbany.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "callalbany.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apYLqNeaQvprCyDyoz4rrAAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇾
Rizzy
2026-08-28 17:13:16
(1 week ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-21 06:30:34
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 02:30:30.290196 2026] [security2:error] [pid 7438:tid 7438] [client 122.8.94.83:47383] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||embeddedtrade.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "embeddedtrade.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aofwhh4P_Hso3gzUgPZKHAAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-17 16:38:37
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 12:38:33.740461 2026] [security2:error] [pid 6870:tid 6870] [client 122.8.94.83:63567] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||i-spose.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "i-spose.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoM5CZQzOgNON_tgsTvkTwAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-03 05:39:46
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 01:39:42.101794 2026] [security2:error] [pid 754669:tid 754669] [client 122.8.94.83:40989] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bgellis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bgellis.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anApnuqGpPjI43i2E1dC-AAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Yepngo
2026-07-14 05:45:18
(1 month ago)
122.8.94.83 - - [14/Jul/2026:07:39:13 +0200] "POST /wp-login.php HTTP/2.0" 200 11356 "https://yepngo ...
show more
122.8.94.83 - - [14/Jul/2026:07:39:13 +0200] "POST /wp-login.php HTTP/2.0" 200 11356 "https://yepngo.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
122.8.94.83 - - [14/Jul/2026:07:45:17 +0200] "POST /wp-login.php HTTP/2.0" 200 11351 "https://yepngo.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-07-11 03:41:47
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.94.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 10 23:41:44.097211 2026] [security2:error] [pid 32249:tid 32249] [client 122.8.94.83:20495] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kittencream.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kittencream.com"] [uri "/wp-json/wp/v2/users"] [unique_id "alG7eDPnOKqw4LCgF5rA8wAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Tilellit.PRO
2026-07-02 04:06:52
(2 months ago)
tilellit/wp-armour-ban
Hacking
🇫🇷
Tilellit.PRO
2026-06-29 14:40:57
(2 months ago)
Fail2Ban banned 122.8.94.83 for security violations in jail wp-armour. Log: 2026/06/29 14:40:57 [err ...
show more
Fail2Ban banned 122.8.94.83 for security violations in jail wp-armour. Log: 2026/06/29 14:40:57 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 122.8.94.83 | Target: wplogin" , client: 122.8.94.83, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
🇨🇦
electronico
2026-06-28 05:07:37
(2 months ago)
122.8.94.83 - - [28/Jun/2026:16:07:36 +1100] "POST /xmlrpc.php HTTP/1.1" 404 5672 "-" "Apache-HttpCl ...
show more
122.8.94.83 - - [28/Jun/2026:16:07:36 +1100] "POST /xmlrpc.php HTTP/1.1" 404 5672 "-" "Apache-HttpClient/4.5.13 (Java/17.0.18)"
...
show less
Brute-Force
Web App Attack
🇫🇷
Tilellit.PRO
2026-06-27 16:05:42
(2 months ago)
Fail2Ban banned 122.8.94.83 for security violations in jail wp-armour. Log: 2026/06/27 16:05:42 [err ...
show more
Fail2Ban banned 122.8.94.83 for security violations in jail wp-armour. Log: 2026/06/27 16:05:42 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 122.8.94.83 | Target: wplogin" , client: 122.8.94.83, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam