๐บ๐ธ
TPI-Abuse
2025-03-26 08:27:30
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 04:27:25.790820 2025] [security2:error] [pid 26358:tid 26358] [client 159.223.90.159:50289] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||srsrestoration.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "srsrestoration.net"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "Z-O6bZqz8Gcjz4Jcgz8vzAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 07:59:24
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 03:59:17.589086 2025] [security2:error] [pid 3931:tid 3931] [client 159.223.90.159:54146] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||michaelpmcgrath.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "michaelpmcgrath.com"] [uri "/blog/wp-json/wp/v2/users/"] [unique_id "Z-Oz1cDsseZ3nBas7q54wAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 07:36:23
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 03:36:20.250019 2025] [security2:error] [pid 9090:tid 9090] [client 159.223.90.159:62832] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.ixd.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.ixd.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-OudO0QFLytGwpeL1wDKwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 07:18:36
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 03:18:29.031618 2025] [security2:error] [pid 9467:tid 9539] [client 159.223.90.159:49996] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.gilesrentalcars.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.gilesrentalcars.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-OqRSm8lv-_zyRtF6tSqQAAAJI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 07:00:38
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 03:00:34.956649 2025] [security2:error] [pid 11467:tid 11467] [client 159.223.90.159:56242] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||engine-watch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "engine-watch.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-OmEpPzka1LpzI7XZJPHwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 06:38:50
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 02:38:44.703061 2025] [security2:error] [pid 22551:tid 22615] [client 159.223.90.159:61912] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.davidholls.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.davidholls.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-Og9PX19Tu2Mdw0gbbRyAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 06:22:47
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 02:22:42.071115 2025] [security2:error] [pid 3936136:tid 3936136] [client 159.223.90.159:54681] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cosplayculture.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cosplayculture.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-OdMk2S9kMOxu8rNPSylAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 05:47:30
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 01:47:27.053561 2025] [security2:error] [pid 22676:tid 22774] [client 159.223.90.159:62476] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||victorchiarizia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "victorchiarizia.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-OU7-JDJk2pjYDs4Y7VvAAAAgo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 04:52:24
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 00:52:20.432670 2025] [security2:error] [pid 23580:tid 23580] [client 159.223.90.159:52221] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||brandoncomputergeeks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "brandoncomputergeeks.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-OIBIUqQuH5Ku51tgUt0wAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 04:33:32
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 00:33:26.757238 2025] [security2:error] [pid 1488537:tid 1488537] [client 159.223.90.159:56508] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.konahawaiirealty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.konahawaiirealty.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-ODlu2vBs2Ej6bvDDqFlQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-26 04:07:08
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 26 00:07:01.846525 2025] [security2:error] [pid 28586:tid 28586] [client 159.223.90.159:64699] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.elpaco.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.elpaco.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-N9ZfR7ZRz1cLJobHu1BAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ท
rtbh.com.tr
2025-03-25 20:48:36
(1 year ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐ซ๐ท
N3ilawx
2025-03-25 15:58:48
(1 year ago)
Fail2Ban detect something wrong with this ip 159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:44 +000 ...
show more
Fail2Ban detect something wrong with this ip 159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:44 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:44 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:45 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:45 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:45 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:45 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:46 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:46 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:47 +0000]
159.223.90.159 - GET - 404 - [25/Mar/2025:15:58:47 +0000]
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-25 15:36:53
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 159.223.90.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 25 11:36:49.880308 2025] [security2:error] [pid 4087:tid 4087] [client 159.223.90.159:58911] [client 159.223.90.159] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rambleandprose.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rambleandprose.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z-LNkbeevSXv1XGHseIb4QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
directorioeducativo.com
2025-03-25 09:51:15
(1 year ago)
GET="/wp-includes/wlwmanifest.xml" user-agent="Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit ...
show more
GET="/wp-includes/wlwmanifest.xml" user-agent="Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
show less
Web App Attack