๐บ๐ธ
TPI-Abuse
2026-06-14 08:32:47
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 04:32:42.262513 2026] [security2:error] [pid 19373:tid 19373] [client 155.212.37.50:20487] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||churchtop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "churchtop.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai5nKvYM7lcOtVG6Fpgk5wAAACg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-06-11 01:10:52
(3 days ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-01 20:36:55
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 16:36:49.053247 2026] [security2:error] [pid 18194:tid 18194] [client 155.212.37.50:32623] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rendermatrix.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rendermatrix.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah3tYbzR93rIwUaDqH7xWgAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-25 21:48:09
(2 weeks ago)
FPROCO WEBEXPLOIT 155.212.37.50 (155.212.37.50)
Web App Attack
๐บ๐ธ
kosada.com
2026-05-25 15:58:17
(2 weeks ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-21 05:46:54
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 21 01:46:46.102730 2026] [security2:error] [pid 19899:tid 19899] [client 155.212.37.50:64737] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||vonkugelgen.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "vonkugelgen.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ag6cRrlF49q5me5NfIRhkQAAABM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 21:12:59
(1 month ago)
(mod_security) mod_security (id:218580) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:218580) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 17:12:55.408420 2026] [security2:error] [pid 17853:tid 17853] [client 155.212.37.50:11481] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:\\\\/\\\\*[!+](?:[\\\\w\\\\s=_\\\\-()]+)?\\\\*\\\\/)" at ARGS:lang. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/22_SQL_SQLi.conf"] [line "76"] [id "218580"] [rev "1"] [msg "COMODO WAF: MySQL in-line comment detected.||www.genesis-castle.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "SQLi"] [hostname "www.genesis-castle.com"] [uri "/gallery/index.php"] [unique_id "agTpV-4OASp9O2wYMRUVDgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-08 07:48:27
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐ซ๐ท
Sklurk
2026-03-25 04:07:53
(2 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-23 15:44:43
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 155.212.37.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 23 11:44:34.861149 2026] [security2:error] [pid 31944:tid 31944] [client 155.212.37.50:9621] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rhysryan.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rhysryan.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acFf4ubhiwgXT8vTpKVJtAAAAB4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-03-22 02:01:13
(2 months ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
kosada.com
2026-03-21 23:14:31
(2 months ago)
Web password guessing
Brute-Force
๐บ๐ธ
xmission.com
2026-03-03 23:25:29
(3 months ago)
155.212.37.50 - - [03/Mar/2026:16:25:28 -0700] "POST /wp-login.php HTTP/1.1" 200 2333 "https://dooce ...
show more
155.212.37.50 - - [03/Mar/2026:16:25:28 -0700] "POST /wp-login.php HTTP/1.1" 200 2333 "https://dooce.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
...
show less
Brute-Force
๐ซ๐ฎ
Shaik Sai Meera
2025-11-26 13:10:05
(6 months ago)
IM360 WAF: Block Drupal/Joomla spammers
Brute-Force
Bad Web Bot