๐บ๐ธ
nationaleventpros.com
2026-09-03 02:37:48
(17 hours ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-31 15:15:14
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:15:10.026245 2026] [security2:error] [pid 2739:tid 2739] [client 157.22.46.229:64013] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||manty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "manty.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apWafsJv8eoprwyG3lFiVwAAABA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-08-28 22:20:08
(5 days ago)
Web password guessing
Brute-Force
๐บ๐ธ
nationaleventpros.com
2026-08-20 17:14:18
(2 weeks ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-11 11:02:52
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 07:02:45.421436 2026] [security2:error] [pid 856381:tid 856381] [client 157.22.46.229:50845] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tekbit.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tekbit.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ansBVYa-vCffodaqhBuI8wAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 19:52:39
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:52:33.181516 2026] [security2:error] [pid 32685:tid 32685] [client 157.22.46.229:64873] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||phoenixchicagorealty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "phoenixchicagorealty.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ame3AWZNlj1IVE5h_32iGgAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-08 23:52:06
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 08 19:52:02.498375 2026] [security2:error] [pid 6022:tid 6154] [client 157.22.46.229:58033] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||transiit.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "transiit.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ak7ioo5ATeuzxAGdHW4BhwAAAlI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Tilellit.PRO
2026-06-29 15:10:17
(2 months ago)
Fail2Ban banned 157.22.46.229 for security violations in jail wp-armour. Log: 2026/06/29 15:10:16 [e ...
show more
Fail2Ban banned 157.22.46.229 for security violations in jail wp-armour. Log: 2026/06/29 15:10:16 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 157.22.46.229 | Target: wplogin" , client: 157.22.46.229, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐ซ๐ท
Tilellit.PRO
2026-06-27 11:50:39
(2 months ago)
Fail2Ban banned 157.22.46.229 for security violations in jail wp-armour. Log: 2026/06/27 11:50:38 [e ...
show more
Fail2Ban banned 157.22.46.229 for security violations in jail wp-armour. Log: 2026/06/27 11:50:38 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 157.22.46.229 | Target: wplogin" , client: 157.22.46.229, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐บ๐ธ
TPI-Abuse
2026-04-11 13:45:54
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 09:45:46.619440 2026] [security2:error] [pid 3480427:tid 3480427] [client 157.22.46.229:35597] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dezignz.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dezignz.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adpQih8kb_103AdAHsJe8wAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2026-04-07 18:30:04
(4 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 16:26:15
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 157.22.46.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 12:26:06.340387 2026] [security2:error] [pid 4894:tid 4894] [client 157.22.46.229:36697] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zebax.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zebax.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acqkHsRHcAoBY7wzvAQ4XAAAABQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-03-05 06:22:06
(5 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 157.22.46.229 (PL/Poland/-): 1 in the last 360 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 157.22.46.229 (PL/Poland/-): 1 in the last 3600 secs (0-197)
show less
Hacking
๐ซ๐ท
masterguru
2026-03-05 04:24:18
(5 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 157.22.46.229 (PL/Poland/-): 1 in the last 360 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 157.22.46.229 (PL/Poland/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ซ๐ท
masterguru
2026-02-23 15:16:48
(6 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 157.22.46.229 (PL/Poland/-): 1 in the last 360 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 157.22.46.229 (PL/Poland/-): 1 in the last 3600 secs (0-196)
show less
Hacking