Anonymous
2026-06-07 21:18:22
(6 hours ago)
[redacted] 162.19.68.67 - - [07/Jun/2026:23:18:19 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mo ...
show more
[redacted] 162.19.68.67 - - [07/Jun/2026:23:18:19 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:40.0) Gecko/20100101 Firefox/40.0"
[redacted] 162.19.68.67 - - [07/Jun/2026:23:18:19 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0"
[redacted] 162.19.68.67 - - [07/Jun/2026:23:18:19 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:60.0) Gecko/20100101 Firefox/60.0"
[redacted] 162.19.68.67 - - [07/Jun/2026:23:18:19 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:45.0) Gecko/20100101 Firefox/45.0"
[redacted] 162.19.68.67 - - [07/Jun/2026:23:18:19 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0"
[redacted] 162.19.68.67 - - [07/Jun/2026:23:18:20 +0200] "POST /xmlrpc.php
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 19:51:41
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 15:51:38.355733 2026] [security2:error] [pid 27496:tid 27496] [client 162.19.68.67:35058] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||georgesmarina.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "georgesmarina.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiXLygcu7N1QJ0U4F48baAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
huginet
2026-06-07 03:49:50
(1 day ago)
162.19.68.67 - - [07/Jun/2026:05:49:49 +0200] "GET /?author=2 HTTP/1.1" 404 52279 "-" "Mozilla/5.0 ( ...
show more
162.19.68.67 - - [07/Jun/2026:05:49:49 +0200] "GET /?author=2 HTTP/1.1" 404 52279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:43.0) Gecko/20100101 Firefox/43.0"
162.19.68.67 - - [07/Jun/2026:05:49:49 +0200] "GET /?author=2 HTTP/1.1" 404 52279 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0"
...
show less
Web Spam
Web App Attack
Anonymous
2026-06-06 09:22:46
(1 day ago)
[redacted] 162.19.68.67 - - [06/Jun/2026:11:22:44 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mo ...
show more
[redacted] 162.19.68.67 - - [06/Jun/2026:11:22:44 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Firefox/78.0"
[redacted] 162.19.68.67 - - [06/Jun/2026:11:22:44 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:51.0) Gecko/20100101 Firefox/51.0"
[redacted] 162.19.68.67 - - [06/Jun/2026:11:22:44 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:45.0) Gecko/20100101 Firefox/45.0"
[redacted] 162.19.68.67 - - [06/Jun/2026:11:22:44 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0"
[redacted] 162.19.68.67 - - [06/Jun/2026:11:22:45 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0"
apollonia-barba
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 14:42:03
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 10:41:55.589748 2026] [security2:error] [pid 4176:tid 4176] [client 162.19.68.67:47684] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.writebetweenthelines.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.writebetweenthelines.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiLgM6VBxzUfOsli0rp0OgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 13:30:26
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 09:30:20.351365 2026] [security2:error] [pid 7293:tid 7293] [client 162.19.68.67:45764] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.texascottagebakers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.texascottagebakers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiLPbMKhNy7xf3UfEVn_MgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-05 06:16:18
(2 days ago)
[server.tmg.gr] httpd-suspicious-path: sites=imeresd.gr; logs=/var/log/httpd/domains/imeresd.gr.log; ...
show more
[server.tmg.gr] httpd-suspicious-path: sites=imeresd.gr; logs=/var/log/httpd/domains/imeresd.gr.log; samples=/?author=1 | /author/admin/ | /?author=2
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 00:38:49
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 20:38:42.789953 2026] [security2:error] [pid 16233:tid 16233] [client 162.19.68.67:45844] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stellabluesales.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stellabluesales.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiIakkrXXHvdB8PesAQjgAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 00:19:14
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 20:19:09.797316 2026] [security2:error] [pid 18981:tid 18981] [client 162.19.68.67:45802] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fetchamreadingroom.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fetchamreadingroom.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aiIV_aS9QzcLQdejjff_xgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 01:25:00
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 21:24:53.982940 2026] [security2:error] [pid 27087:tid 27087] [client 162.19.68.67:58414] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kdgsf.xyz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kdgsf.xyz"] [uri "/wp-json/wp/v2/users"] [unique_id "aiDT5XRu0_9N27Ij7ohPiwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-03 04:54:09
(4 days ago)
(wordpress) Failed wordpress login from 162.19.68.67 (FR/France/ssgra808-1.serversis.net)
Brute-Force
๐ซ๐ท
dynamix
2026-06-02 23:19:45
(5 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 15:38:14
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:38:10.185436 2026] [security2:error] [pid 8040:tid 8040] [client 162.19.68.67:57558] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.yuichiro.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.yuichiro.us"] [uri "/wp-json/wp/v2/users"] [unique_id "ah744lu1qW5WBsTS1C6PXgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-02 07:12:44
(5 days ago)
(wordpress-user-enum) Failed wordpress-user-enum trigger from 162.19.68.67 (FR/France/ssgra808-1.ser ...
show more
(wordpress-user-enum) Failed wordpress-user-enum trigger from 162.19.68.67 (FR/France/ssgra808-1.serversis.net): (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-31 20:03:51
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 162.19.68.67 (ssgra808-1.serversis.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 16:03:47.728210 2026] [security2:error] [pid 25283:tid 25283] [client 162.19.68.67:57184] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||warpedweed.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "warpedweed.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahyUIwpIlVysQUXH1x8x6AAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack