🇺🇸
TPI-Abuse
2026-09-02 02:00:21
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:00:12.335413 2026] [security2:error] [pid 9726:tid 9730] [client 161.153.27.16:7379] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.theyogicat.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.theyogicat.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "apeDLLX_MtWSJ_SL_o7KfAAAAIA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 23:17:33
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 19:17:27.033600 2026] [security2:error] [pid 30441:tid 30441] [client 161.153.27.16:51194] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||john-bell-associates.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "john-bell-associates.com"] [uri "/reddit.com"] [unique_id "apYLh82vzI8G9Hb53LrC8gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 11:46:02
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:45:56.905049 2026] [security2:error] [pid 28739:tid 28739] [client 161.153.27.16:64222] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.greatwesternfirearms.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.greatwesternfirearms.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "apVpdLOj9h_irRBn_K54OgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-08-30 12:05:52
(5 days ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-30 04:50:30
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 00:50:23.272775 2026] [security2:error] [pid 19316:tid 19316] [client 161.153.27.16:58676] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||nrvoutdoors.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "nrvoutdoors.com"] [uri "/GEORGE/Thumbs.db"] [unique_id "apO2j-K87g-dUf3HWFzTuwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇷🇴
iulianh
2026-08-29 20:51:48
(6 days ago)
80,443
Brute-Force
SSH
🇺🇸
TPI-Abuse
2026-08-29 14:33:45
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 10:33:39.059018 2026] [security2:error] [pid 7526:tid 7526] [client 161.153.27.16:2012] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.precisionk-9.com|F|2"] [data ".amcboise.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.precisionk-9.com"] [uri "/www.amcboise.com"] [unique_id "apLtwzO5Os_o3gBjKQGFOAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-08-29 11:05:15
(6 days ago)
Too many Status 40X (14)
Brute-Force
Web App Attack
🇧🇪
taivas.nl
2026-08-29 04:33:11
(1 week ago)
Many_bad_calls
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 17:24:46
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 161.153.27.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 13:24:38.943959 2026] [security2:error] [pid 25455:tid 25455] [client 161.153.27.16:33253] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||adlc18.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "adlc18.org"] [uri "/index.php/wp-json/wp/v2/users/1"] [unique_id "apHEVm7PcwK8iLufvUkY1QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
taivas.nl
2026-08-28 15:02:11
(1 week ago)
Bad_requests
Bad Web Bot
🇺🇸
ChamberofCommerce.com
2026-08-28 10:51:53
(1 week ago)
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested ...
show more
Unauthorized Scraping Attempt - More then 225 Pages Requested in a 24 hour period - Total Requested Before Block:226
show less
Bad Web Bot
🇩🇪
big-cloud.nl
2026-08-28 08:28:26
(1 week ago)
Try to access /xmlrpc.php
Web App Attack
🇮🇹
VHosting
2026-08-27 18:40:03
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack