🇪🇸
librebit
2026-09-04 01:55:37
(1 hour ago)
Brute force
Brute-Force
🇺🇸
TPI-Abuse
2026-09-04 00:07:36
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 20:07:26.399469 2026] [security2:error] [pid 19095:tid 19095] [client 155.212.37.148:10449] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hotjive.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hotjive.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apoLviuvzdUHHqSzZZbZOgAAACI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
librebit
2026-09-02 02:06:59
(2 days ago)
Brute force
Brute-Force
🇺🇸
TPI-Abuse
2026-08-26 18:59:58
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 14:59:51.322728 2026] [security2:error] [pid 7313:tid 7313] [client 155.212.37.148:39123] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cephedanisman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cephedanisman.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ao83p7UoEig9qh4Xs4dzsgAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 06:15:51
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:15:46.732142 2026] [security2:error] [pid 11479:tid 11479] [client 155.212.37.148:44631] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ibcountn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ibcountn.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aovhkljzIPIf7aiied_NewAAAA0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-20 16:42:12
(2 weeks ago)
Web application attack detected.
Web App Attack
🇮🇹
CoreTech srl
2026-08-18 15:58:56
(2 weeks ago)
cloudlinux2 fail2ban: 2026-08-18 17:53:45,670 fail2ban.filter [1456]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-18 17:53:45,670 fail2ban.filter [1456]: INFO [plesk-wordpress] Found 157.22.46.26 - 2026-08-18 17:53:44cloudlinux2 fail2ban: 2026-08-18 17:53:48,841 fail2ban.filter [1456]: INFO [plesk-wordpress] Found 155.212.37.148 - 2026-08-18 17:53:47cloudlinux2 fail2ban: 2026-08-18 17:54:00,384 fail2ban.filter [1456]: INFO [plesk-wordpress] Found 185.101.21.133 - 2026-08-18 17:53:59cloudlinux2 fail2ban: 2026-08-18 17:54:12,452 fail2ban.filter [1456]: INFO [plesk-wordpress] Found 77.95.172.103 - 2026-08-18 17:54:11cloudlinux2 fail2ban: 2026-08-18 17:54:14,348 fail2ban.filter [1456]: INFO [plesk-wordpress] Found 122.8.94.224 - 2026-08-18 17:54:13cloudlinux2 fail2ban: 2026-08-18 17:54:16,262 fail2ban.filter [1456]: INFO [plesk-wordpress] Found 170.168.30.80 - 2026-08-18 17:54:15cloudlinux2 fail2ban: 2026-08-18 17:54:23,724 fail2ban.filter [1456]: INFO [plesk-wordpress] Found 193.202.81.195 - 2026-08-18 17:54:22cloudlin
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-08-11 18:08:18
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 14:08:09.793767 2026] [security2:error] [pid 2768731:tid 2768731] [client 155.212.37.148:19985] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||schlegelcreative.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "schlegelcreative.com"] [uri "/wp-json/wp/v2/users"] [unique_id "antlCeSFF-kvMR9APEKQdgAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-04 22:12:37
(4 weeks ago)
FPROCO WEBEXPLOIT 155.212.37.148 (155.212.37.148)
Web App Attack
🇺🇸
TPI-Abuse
2026-08-04 13:16:27
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 04 09:16:21.519909 2026] [security2:error] [pid 606004:tid 606004] [client 155.212.37.148:35223] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mtalame.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mtalame.com"] [uri "/wp-json/wp/v2/users"] [unique_id "anHmJUbvOEQEZGGquBMAYAAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-03 02:24:37
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 02 22:24:30.894105 2026] [security2:error] [pid 3788500:tid 3788500] [client 155.212.37.148:59563] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||form-a-tool.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "form-a-tool.com"] [uri "/wp-json/wp/v2/users"] [unique_id "am_73g5dBIMIOw5OLZuw7gAAABw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-24 16:19:56
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 12:19:49.071760 2026] [security2:error] [pid 2954248:tid 2954248] [client 155.212.37.148:22971] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ramoundos-systems.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ramoundos-systems.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amOQpZ5-qH2pT7Kz2_kyMwAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-07-03 17:13:00
(2 months ago)
IPBlock protected site ID [4055-d][s=06].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
🇫🇷
Tilellit.PRO
2026-07-02 04:05:04
(2 months ago)
tilellit/wp-armour-ban
Hacking
🇫🇷
Tilellit.PRO
2026-06-29 13:09:19
(2 months ago)
Fail2Ban banned 155.212.37.148 for security violations in jail wp-armour. Log: 2026/06/29 13:09:18 [ ...
show more
Fail2Ban banned 155.212.37.148 for security violations in jail wp-armour. Log: 2026/06/29 13:09:18 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 155.212.37.148 | Target: wplogin" , client: 155.212.37.148, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam