πΊπΈ
TPI-Abuse
2024-03-03 03:52:58
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 02 22:52:53.470869 2024] [security2:error] [pid 20092] [client 139.99.130.188:31525] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wplusw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wplusw.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZeP0FUB4NERgIVNQzqmmvgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
iNetWorker
2024-03-02 00:18:00
(2 years ago)
trolling for resource vulnerabilities
Web App Attack
πΊπΈ
hostseries
2024-02-27 18:40:34
(2 years ago)
Trigger: LF_DISTATTACK
Brute-Force
πΊπΈ
TPI-Abuse
2023-12-24 01:47:26
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 23 20:47:21.133974 2023] [security2:error] [pid 13656] [client 139.99.130.188:33683] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||groupof12.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "groupof12.com"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "ZYeNqd2qvrHrPaxyJWZBwgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
MAGIC
2023-12-24 01:00:21
(2 years ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2023-12-13 19:47:20
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 13 14:47:14.225724 2023] [security2:error] [pid 11685] [client 139.99.130.188:61155] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||josephshv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "josephshv.com"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "ZXoKQhNPp52M0vTRHkdPRQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
hostseries
2023-12-12 22:42:49
(2 years ago)
Trigger: LF_DISTATTACK
Brute-Force
πΊπΈ
TPI-Abuse
2023-12-10 05:58:36
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 10 00:58:29.030712 2023] [security2:error] [pid 27453] [client 139.99.130.188:38797] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||harbouronline.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "harbouronline.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZXVThbEWhhlaCxJgeNOgsgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-12-08 08:22:26
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 08 03:22:23.192157 2023] [security2:error] [pid 11757] [client 139.99.130.188:25643] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||harvestfrc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "harvestfrc.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZXLSP0fdRhydGbtFAGAnMQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
weblite
2023-12-07 23:11:02
(2 years ago)
WP_AUTHOR_SCANNING WP_LOGIN_FAIL
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-30 21:53:25
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 30 16:53:18.752410 2023] [security2:error] [pid 15521] [client 139.99.130.188:4623] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||networkparanoia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "networkparanoia.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "ZWkETubTCz116m99QZD76wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2023-11-30 06:59:05
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 30 01:59:02.039691 2023] [security2:error] [pid 28219] [client 139.99.130.188:8799] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||j3ee.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "j3ee.com"] [uri "/shop/wp-json/wp/v2/users/"] [unique_id "ZWgythEtL6-rjhgukXXFRAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2023-11-29 08:48:28
(2 years ago)
Malicious activity detected
Hacking
Brute-Force
πΏπ¦
Birdflew
2023-11-28 23:13:09
(2 years ago)
Port scanning
Hacking
πΊπΈ
TPI-Abuse
2023-11-27 20:27:40
(2 years ago)
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 139.99.130.188 (au1.zoogvpn.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 27 15:27:19.430330 2023] [security2:error] [pid 23395] [client 139.99.130.188:54727] [client 139.99.130.188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stormwlf.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stormwlf.com"] [uri "/wp/wp-json/wp/v2/users/"] [unique_id "ZWT7p3Vs6mUmsYWXm4eu8AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack