Anonymous
2026-08-26 16:57:09
(1 hour ago)
PARMACOM WEBEXPLOIT 146.19.90.92 (146.19.90.92)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-18 22:03:58
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 18:03:54.470491 2026] [security2:error] [pid 7991:tid 8015] [client 146.19.90.92:22777] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||killyourattitude.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "killyourattitude.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoTWysJDtN6l7IMJfKcQfQAAAYc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-18 20:51:34
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 16:51:31.242249 2026] [security2:error] [pid 31661:tid 31661] [client 146.19.90.92:31211] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hadleymarketing.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hadleymarketing.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoTF0w0bXiOmhpHm4z7YAQAAABU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-01 00:49:26
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 31 20:49:22.383549 2026] [security2:error] [pid 4131262:tid 4131262] [client 146.19.90.92:42581] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||iahksa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "iahksa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "am1CkomnkDhqtFhhnWiTMQAAAIY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-30 02:40:08
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 22:39:55.978644 2026] [security2:error] [pid 1181777:tid 1181777] [client 146.19.90.92:36307] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||individualhealth.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "individualhealth.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amq5e7MSqQ47LBYBM6U-1AAAABg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Tilellit.PRO
2026-06-29 10:35:00
(1 month ago)
Fail2Ban banned 146.19.90.92 for security violations in jail wp-armour. Log: 2026/06/29 10:34:59 [er ...
show more
Fail2Ban banned 146.19.90.92 for security violations in jail wp-armour. Log: 2026/06/29 10:34:59 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 146.19.90.92 | Target: wplogin" , client: 146.19.90.92, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
π«π·
Tilellit.PRO
2026-06-27 15:52:22
(1 month ago)
Fail2Ban banned 146.19.90.92 for security violations in jail wp-armour. Log: 2026/06/27 15:52:22 [er ...
show more
Fail2Ban banned 146.19.90.92 for security violations in jail wp-armour. Log: 2026/06/27 15:52:22 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 146.19.90.92 | Target: wplogin" , client: 146.19.90.92, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
πΊπΈ
TPI-Abuse
2026-06-19 13:53:44
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 09:53:40.154340 2026] [security2:error] [pid 14873:tid 14873] [client 146.19.90.92:65003] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tduniverse.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tduniverse.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajVJ5G1o0uOkPH_RHyuIxQAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-05 10:37:47
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 05 06:37:43.854279 2026] [security2:error] [pid 10923:tid 10923] [client 146.19.90.92:9461] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gonzalez.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gonzalez.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afnId6Vf0vrT7q3xkz12twAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-04 00:30:36
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 20:30:31.162550 2026] [security2:error] [pid 1115:tid 1152] [client 146.19.90.92:38223] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||teddysdeli.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "teddysdeli.com"] [uri "/wp-json/wp/v2/users"] [unique_id "affopxNoup6QWQ1YeMimkgAAAQc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-17 23:13:51
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 146.19.90.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 17 18:13:47.684047 2025] [security2:error] [pid 30586:tid 30600] [client 146.19.90.92:43293] [client 146.19.90.92] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certifiedpoliticalscientist.com"] [uri "/.env"] [unique_id "Z7PCq5pDUEL54ufVstVM5wAAAIs"], referer: https://tasamm.com/about/ccc30.html
show less
Brute-Force
Bad Web Bot
Web App Attack