๐บ๐ธ
TPI-Abuse
2025-09-29 17:11:19
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 29 13:11:15.770483 2025] [security2:error] [pid 13001:tid 13001] [client 154.94.14.122:38507] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dunningtons.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dunningtons.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aNq9s5W5eBwZSNLmsfERnAAAABE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-24 18:48:52
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 24 14:48:43.988293 2025] [security2:error] [pid 25507:tid 25507] [client 154.94.14.122:50191] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||opere.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "opere.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aNQ9C0GMFmSnnLu5OWAqWAAAABs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bitpanda
2025-08-31 00:00:59
(9 months ago)
Malicious activity detected by Imunify360
Brute-Force
SSH
๐ฉ๐ช
bitpanda
2025-08-30 00:00:53
(9 months ago)
Malicious activity detected by Imunify360
Brute-Force
SSH
๐ฉ๐ช
bitpanda
2025-08-28 01:00:40
(9 months ago)
Malicious activity detected by Imunify360
Brute-Force
SSH
๐ฉ๐ช
bitpanda
2025-08-27 00:00:56
(9 months ago)
Malicious activity detected by Imunify360
Brute-Force
SSH
๐ฉ๐ช
bitpanda
2025-08-26 00:00:48
(9 months ago)
Malicious activity detected by Imunify360
Brute-Force
SSH
๐ฉ๐ช
bitpanda
2025-08-25 00:00:39
(9 months ago)
Malicious activity detected by Imunify360
Brute-Force
SSH
Anonymous
2025-08-02 00:01:58
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-08-01 17:16:52
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 01 13:16:47.906451 2025] [security2:error] [pid 32366:tid 32366] [client 154.94.14.122:14159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||belindalloyd.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "belindalloyd.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aIz2f7DuM_qYDdxjN0KrVgAAAAc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-05-31 01:31:54
(1 year ago)
2025-05-31T03:31:54.012011+02:00 zanati wp(www.sahpa.co.za)[3332503]: Blocked authentication attempt ...
show more
2025-05-31T03:31:54.012011+02:00 zanati wp(www.sahpa.co.za)[3332503]: Blocked authentication attempt for [email protected] from 154.94.14.122
...
show less
Web App Attack
Anonymous
2025-05-18 04:31:05
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-05-17 01:28:48
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-05-10 05:20:28
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-05-09 20:35:36
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.14.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 09 16:35:33.269477 2025] [security2:error] [pid 972755:tid 972755] [client 154.94.14.122:58511] [client 154.94.14.122] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mrconway.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mrconway.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aB5nFYjAfdfqMXDg15i1wwAAABY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack