๐ซ๐ท
SpaceHost-Server
2026-06-15 22:27:03
(4 days ago)
Brute-Force
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-06-14 22:26:45
(5 days ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 23:44:15
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 19:44:07.416723 2026] [security2:error] [pid 28767:tid 28772] [client 159.195.58.118:34394] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tkfay.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tkfay.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aitIR_tkwF7NhAv8OtlqDgAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 07:27:41
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 03:27:33.659789 2026] [security2:error] [pid 11489:tid 11489] [client 159.195.58.118:45328] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fiasdesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fiasdesigns.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aikR5UvS736U9I28ERsmmQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 13:15:20
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:15:15.394980 2026] [security2:error] [pid 30333:tid 30333] [client 159.195.58.118:55574] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jdeloa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jdeloa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aigR4w0ElLqvNXZJLGbZ8gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 14:49:21
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 10:49:15.755521 2026] [security2:error] [pid 2837:tid 2837] [client 159.195.58.118:37284] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nextstepplus.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nextstepplus.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aibWa0D1-BlTzjxYQjJADAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-07 05:10:09
(1 week ago)
WordPress wp-login.php Brute Force Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 01:56:04
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 21:55:58.001054 2026] [security2:error] [pid 24492:tid 24492] [client 159.195.58.118:59874] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.americanureport.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.americanureport.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiTPrenwYJ_UQNrVobYWHwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-04 06:43:13
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 02:26:25
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 22:26:19.529918 2026] [security2:error] [pid 16877:tid 16877] [client 159.195.58.118:39930] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pinebrookdesign.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pinebrookdesign.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiDiS-R-dtQRd5hClCKdsAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 22:58:07
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 18:58:03.457508 2026] [security2:error] [pid 25514:tid 25514] [client 159.195.58.118:55146] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tcomputerguy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tcomputerguy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah9f-w4m2nqMqbJbAcRBHgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 23:16:23
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 19:16:15.691130 2026] [security2:error] [pid 4465:tid 4465] [client 159.195.58.118:55090] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.hvacmechanalysis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.hvacmechanalysis.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah4Sv8rlzTtUCr_jkwcPYwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 19:18:47
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 15:18:40.542214 2026] [security2:error] [pid 21811:tid 21811] [client 159.195.58.118:47206] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.eta-mct.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.eta-mct.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahyJkIBq_BEw07wNSPueagAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 14:53:58
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 10:53:54.766301 2026] [security2:error] [pid 32554:tid 32554] [client 159.195.58.118:48284] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.drayvian.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.drayvian.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahxLgnuqHlBWiGxE7ICnXgAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 13:21:16
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 159.195.58.118 (web28.flamenetworks.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 09:21:08.756676 2026] [security2:error] [pid 13608:tid 13608] [client 159.195.58.118:59590] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.speedysremodeling.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.speedysremodeling.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahw1xB802i3hZJTHMOAYCwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack