🇫🇷
Stara
2026-09-04 23:55:08
(10 hours ago)
Automated block - Joomla/WordPress/OpenCart vulnerability scanner exploitation detected (Mala Kinesk ...
show more
Automated block - Joomla/WordPress/OpenCart vulnerability scanner exploitation detected (Mala Kineskinja)
show less
Hacking
Brute-Force
Web App Attack
🇺🇸
nationaleventpros.com
2026-09-03 02:58:52
(2 days ago)
WordPress login attempt
Brute-Force
🇨🇭
backslash
2026-08-28 14:57:11
(1 week ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-27 03:54:47
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:54:43.099217 2026] [security2:error] [pid 1102:tid 1120] [client 122.8.95.190:13015] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rodela.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rodela.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ao-1A6mltklSdtg4v53G1AAAAM4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 07:13:16
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 03:13:11.117979 2026] [security2:error] [pid 3785:tid 3785] [client 122.8.95.190:45551] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||keysenterprise.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "keysenterprise.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aovvB6mCvjq7hnLnAF69wgAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-20 21:52:47
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 17:52:41.763485 2026] [security2:error] [pid 7828:tid 7828] [client 122.8.95.190:35105] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||muslera.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "muslera.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aod3KeHPbjmb-7RNSOoQyAAAABg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
kosada.com
2026-08-11 16:16:51
(3 weeks ago)
Web password guessing
Brute-Force
🇺🇸
TPI-Abuse
2026-08-07 17:15:48
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 13:15:38.849595 2026] [security2:error] [pid 29212:tid 29212] [client 122.8.95.190:58251] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||enfiestate.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "enfiestate.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anYSuhRlakMHjL-QUo40XAAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-24 15:21:44
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 122.8.95.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 11:21:38.033328 2026] [security2:error] [pid 597563:tid 597563] [client 122.8.95.190:55405] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mbnetworking.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mbnetworking.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amODAhNpY7xdddE5-hMRPQAAABo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Tilellit.PRO
2026-06-27 05:33:31
(2 months ago)
Fail2Ban banned 122.8.95.190 for security violations in jail wp-armour. Log: 2026/06/27 05:33:30 [er ...
show more
Fail2Ban banned 122.8.95.190 for security violations in jail wp-armour. Log: 2026/06/27 05:33:30 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 122.8.95.190 | Target: wplogin" , client: 122.8.95.190, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
🇺🇸
agenciahypelab.com.br
2026-02-24 15:08:24
(6 months ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH