๐ง๐ท
hostseries
2025-10-08 23:59:43
(11 months ago)
Trigger: LF_DISTATTACK
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-10-06 03:16:42
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 05 23:16:34.642899 2025] [security2:error] [pid 24226:tid 24226] [client 159.242.234.178:22253] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||iplantotravel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "iplantotravel.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOM0ko9c9x6GO6agrgw8MAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-05 21:54:49
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 05 17:54:45.395991 2025] [security2:error] [pid 3332:tid 3332] [client 159.242.234.178:22353] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||futurbike.it|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "futurbike.it"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOLpJetaxPeGI5tH16UFXQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-05 21:17:03
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 05 17:16:59.509373 2025] [security2:error] [pid 5766:tid 5766] [client 159.242.234.178:22384] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||forefrontmusic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "forefrontmusic.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOLgS6gPsWf7d4C71FE9gQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-05 18:15:15
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 05 14:15:08.480697 2025] [security2:error] [pid 32462:tid 32462] [client 159.242.234.178:22372] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eddyandvanessa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eddyandvanessa.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOK1rBaTnw9bWbCxaq6EZAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-05 17:20:32
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 159.242.234.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 05 13:20:25.999616 2025] [security2:error] [pid 28636:tid 28636] [client 159.242.234.178:22302] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.dogarttoday.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.dogarttoday.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aOKo2b05qPhxY67zW92FKQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
abdubhai
2025-10-05 09:50:42
(11 months ago)
159.242.234.178 - - [05/Oct/2025
...
Brute-Force
Anonymous
2025-10-05 08:07:00
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฉ๐ช
kjaerulff
2025-10-05 07:57:11
(11 months ago)
Failed Wordpress login using xmlrpc.php
Web App Attack
๐ณ๐ด
pcin.no(security)
2025-08-17 18:38:59
(1 year ago)
Failed password for Administrator : Attempts: 3
Brute-Force
๐ฉ๐ช
Kimax
2025-08-15 17:02:42
(1 year ago)
RdpGuard detected brute-force attempt on RDP
Brute-Force
๐จ๐ญ
TOCE
2025-08-01 00:31:15
(1 year ago)
7 hits seen on 2025-08-01, ports 5901 (VNC) on a honeypot from www.toce.ch
Brute-Force
๐ช๐ธ
10dencehispahard SL
2025-06-30 06:12:52
(1 year ago)
WP probing for vulnerabilities
Hacking
Exploited Host
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-06-25 00:19:15
(1 year ago)
WP Admin Scan Activities
Web App Attack
๐ง๐ช
cmbplf
2025-06-23 10:24:47
(1 year ago)
6.259 requests with url.path */xmlrpc.php
Brute-Force
Bad Web Bot