๐ซ๐ท
masterguru
2026-09-01 02:28:17
(1 day ago)
wp-login request blocked, no referer. Pattern match "wp-login.php" at REQUEST_URI. (88020-196)
Hacking
๐บ๐ธ
Jason Howell
2026-09-01 01:56:57
(1 day ago)
138.68.59.194 - - [31/Aug/2026:20:47:18 -0500] "GET /wp-login.php HTTP/1.1" 301 589 "-" "Mozilla/5.0 ...
show more
138.68.59.194 - - [31/Aug/2026:20:47:18 -0500] "GET /wp-login.php HTTP/1.1" 301 589 "-" "Mozilla/5.0"
138.68.59.194 - - [31/Aug/2026:20:47:18 -0500] "GET /wp-login.php HTTP/1.1" 200 5518 "-" "Mozilla/5.0"
138.68.59.194 - - [31/Aug/2026:20:53:45 -0500] "POST /wp-login.php HTTP/1.1" 200 8392 "-" "Mozilla/5.0"
138.68.59.194 - - [31/Aug/2026:20:53:45 -0500] "POST /wp-login.php HTTP/1.1" 200 8379 "-" "Mozilla/5.0"
138.68.59.194 - - [31/Aug/2026:20:56:56 -0500] "POST /wp-login.php HTTP/1.1" 200 4811 "-" "Mozilla/5.0"
...
show less
Web App Attack
๐ฎ๐น
VHosting
2026-09-01 01:55:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-01 01:52:09
(1 day ago)
Failed Wordpress Logins
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-01 01:07:11
(1 day ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐ฆ๐บ
MAGIC
2023-11-22 11:00:40
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2023-11-20 15:05:33
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 10:05:27.767923 2023] [security2:error] [pid 23997] [client 138.68.59.194:45460] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||climasyequipos.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "climasyequipos.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVt1t8Om3bNy4RGnL7P-JwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 14:39:04
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 09:38:56.057382 2023] [security2:error] [pid 7313] [client 138.68.59.194:45374] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bolivarbulletintimes.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bolivarbulletintimes.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVtvgMZublWEDv87_L9F_QAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 14:04:47
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 09:04:40.000273 2023] [security2:error] [pid 32611] [client 138.68.59.194:39020] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.angelabcomics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.angelabcomics.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVtnd7JSm1GQk18OqNewRQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 12:24:49
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 07:24:42.291267 2023] [security2:error] [pid 32382] [client 138.68.59.194:52322] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.surgicaltechnicianprogram.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.surgicaltechnicianprogram.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVtQCvhjjcwJnAfmqQ3HLwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 11:21:10
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 06:21:05.044487 2023] [security2:error] [pid 10584] [client 138.68.59.194:46374] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.realclean.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.realclean.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVtBIR5xgHMkG62-1_0hXwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 09:07:34
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 04:07:31.727077 2023] [security2:error] [pid 10581] [client 138.68.59.194:42322] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.localpetsitters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.localpetsitters.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVsh0_Fo7dckzak-9S5fIQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 08:52:10
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 03:52:05.837577 2023] [security2:error] [pid 8200] [client 138.68.59.194:39704] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||learnserve.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "learnserve.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVseNb85bdHk1DnOD5JBdAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-20 05:35:30
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 20 00:35:23.650434 2023] [security2:error] [pid 16339] [client 138.68.59.194:46804] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eye7graphics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eye7graphics.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVrwG7MAKxUDG31ypNdvLAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-11-19 22:36:58
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 138.68.59.194 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 19 17:36:54.671723 2023] [security2:error] [pid 3243774] [client 138.68.59.194:55338] [client 138.68.59.194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||snegenika.co.il|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "snegenika.co.il"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ZVqOBlx7mNgFciiIePR7NgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack