๐บ๐ธ
TPI-Abuse
2026-08-27 12:22:24
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.213.253.33 (server113.web-hosting.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 162.213.253.33 (server113.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:22:20.197925 2026] [security2:error] [pid 21567:tid 21567] [client 162.213.253.33:51772] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||broneksuchanek.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "broneksuchanek.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apAr_IaKmFY_7tk-1WCyTgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
gigatech
2026-08-27 11:55:04
(2 hours ago)
Webserver Probing
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-27 10:37:26
(4 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:11:21
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.213.253.33 (server113.web-hosting.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 162.213.253.33 (server113.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:11:15.058343 2026] [security2:error] [pid 3260:tid 3260] [client 162.213.253.33:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||avaliantlife.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "avaliantlife.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apANQ12taTpJIN9_2R4pQAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
bmino.pl
2026-08-27 10:07:24
(4 hours ago)
Autoban IP(2): 162.213.253.33 - Hostname: Namecheap, Inc. - City: Los Angeles - Region: California - ...
show more
Autoban IP(2): 162.213.253.33 - Hostname: Namecheap, Inc. - City: Los Angeles - Region: California - Country: United States - Location: - Organization: Namecheap, Inc. - failed attempts.
show less
Web App Attack
๐ช๐ธ
librebit
2026-08-27 09:41:44
(4 hours ago)
Brute force
Brute-Force
๐จ๐ฟ
ptlab
2026-08-27 08:45:18
(5 hours ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-08-27 08:41:13
(5 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:38:58
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.213.253.33 (server113.web-hosting.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 162.213.253.33 (server113.web-hosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:38:54.852692 2026] [security2:error] [pid 22018:tid 22018] [client 162.213.253.33:53152] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hollyndlaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hollyndlaw.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ao_3nvRHFHQj-Xb4WeKErQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-27 08:18:56
(6 hours ago)
cloudlinux2 fail2ban: 2026-08-27 10:14:17,515 fail2ban.filter [1775]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-27 10:14:17,515 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 162.0.209.217 - 2026-08-27 10:14:16cloudlinux2 fail2ban: 2026-08-27 10:14:31,797 fail2ban.filter [1775]: INFO [plesk-apache] Found 10.119.252.94 - 2026-08-27 10:14:31cloudlinux2 fail2ban: 2026-08-27 10:14:43,011 fail2ban.filter [1775]: INFO [plesk-apache] Found 10.119.252.94 - 2026-08-27 10:14:42cloudlinux2 fail2ban: 2026-08-27 10:15:11,283 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 104.219.248.23 - 2026-08-27 10:15:10cloudlinux2 fail2ban: 2026-08-27 10:15:42,286 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 192.64.117.208 - 2026-08-27 10:15:42cloudlinux2 fail2ban: 2026-08-27 10:15:57,318 fail2ban.filter [1775]: INFO [plesk-apache] Found 10.119.252.94 - 2026-08-27 10:15:57cloudlinux2 fail2ban: 2026-08-27 10:15:55,522 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 162.213.253.33 - 2026-08-27 10:15:55cloudlinux2 fai
show less
Web App Attack
๐บ๐ธ
wordpresshosting.solutions
2026-08-27 07:12:19
(7 hours ago)
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 162.213.253.33 - - [27/Aug/2026 ...
show more
WordPress login/xmlrpc abuse or user enumeration detected. Evidence: 162.213.253.33 - - [27/Aug/2026:07:12:18 +0000] "GET /wp-login.php HTTP/1.1" 200 9835 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
162.213.253.33 - - [27/Aug/2026:07:12:18 +0000] "POST /wp-login.php HTTP/1.1" 503 21510 "https://[DOMAIN]/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
show less
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 06:55:43
(7 hours ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 162.213.253.33 (US/United States/server113.we ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 162.213.253.33 (US/United States/server113.web-hosting.com): 1 in the last 3600 secs (0-196)
show less
Hacking
๐ฎ๐น
CoreTech srl
2026-08-27 06:23:57
(8 hours ago)
cloudlinux2 fail2ban: 2026-08-27 08:19:16,835 fail2ban.filter [1775]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-27 08:19:16,835 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 157.245.138.135 - 2026-08-27 08:19:16cloudlinux2 fail2ban: 2026-08-27 08:19:14,112 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 157.245.138.135 - 2026-08-27 08:19:14cloudlinux2 fail2ban: 2026-08-27 08:19:52,249 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 198.54.126.80 - 2026-08-27 08:19:52cloudlinux2 fail2ban: 2026-08-27 08:20:30,029 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 223.231.239.193 - 2026-08-27 08:20:29cloudlinux2 fail2ban: 2026-08-27 08:20:31,887 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 223.231.239.193 - 2026-08-27 08:20:31cloudlinux2 fail2ban: 2026-08-27 08:21:44,972 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 69.57.162.192 - 2026-08-27 08:21:44cloudlinux2 fail2ban: 2026-08-27 08:22:03,319 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 68.65.123.37 - 2026-08-27 08
show less
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-08-27 06:20:04
(8 hours ago)
Wordfence waf block on decarcerationnation
Web App Attack
๐ฒ๐น
Malta
2026-08-27 06:08:37
(8 hours ago)
162.213.253.33 - - [27/Aug/2026:08:08:36 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows ...
show more
162.213.253.33 - - [27/Aug/2026:08:08:36 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force