🇧🇷
KingHost
2026-09-12 17:06:15
(2 minutes ago)
Brute-Force
🇺🇸
TPI-Abuse
2026-09-12 15:20:19
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 11:20:13.416235 2026] [security2:error] [pid 5476:tid 5476] [client 162.241.54.84:47432] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hellomdinc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hellomdinc.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqVtrYRLFWFkuMJ92Be-qAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 13:15:43
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 09:15:38.894379 2026] [security2:error] [pid 28536:tid 28536] [client 162.241.54.84:48454] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||greenlight.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "greenlight.us"] [uri "/wp-json/wp/v2/users"] [unique_id "aqVQekOo_8kK0hK92wAIVgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 12:03:26
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 08:03:20.491091 2026] [security2:error] [pid 18103:tid 18103] [client 162.241.54.84:60276] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||univey.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "univey.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqU_iLH_7w7-oekE8X4MfQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 11:29:43
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 07:29:37.303226 2026] [security2:error] [pid 2235:tid 2235] [client 162.241.54.84:40628] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rdhtrucking.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rdhtrucking.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqU3ob_0ioHkryV177UKoQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-12 10:36:48
(6 hours ago)
370 requests with url.path */wp.php
Brute-Force
Bad Web Bot
🇩🇪
LRob
2026-09-12 10:28:56
(6 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users | 2026-09-12 10:28 UTC
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 10:14:40
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 162.241.54.84 (vps-4029382.tiagobrito.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 06:14:34.911342 2026] [security2:error] [pid 6093:tid 6093] [client 162.241.54.84:50446] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blog.mindrelaxation.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blog.mindrelaxation.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqUmCqcG9pPl6Va24BkKQQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-12 10:05:25
(7 hours ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-09-12 09:33:52
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇨🇿
lp
2026-09-12 09:20:10
(7 hours ago)
Email account brute force: 1 attempts were recorded from 162.241.54.84
2026-09-12T11:00:51+02:00 war ...
show more
Email account brute force: 1 attempts were recorded from 162.241.54.84
2026-09-12T11:00:51+02:00 warning: vps-4029382.tiagobrito.com.br[162.241.54.84]: SASL PLAIN authentication failed: authentication failure, [email protected]
show less
Brute-Force
🇳🇱
EGP Abuse Dept
2026-09-12 08:34:03
(8 hours ago)
Unsolicited connection to port 465
Port Scan
Hacking
🇩🇪
FeG Deutschland
2026-09-12 07:24:04
(9 hours ago)
Mail: - login with unknown user - bruteforce
Brute-Force
Anonymous
2026-09-12 04:30:29
(12 hours ago)
Failed login attempt detected by Fail2Ban in plesk-postfix jail
Brute-Force
🇮🇩
xveil
2026-09-12 01:56:39
(15 hours ago)
2026-09-12T08:56:37.699564 mail-honeypot postfix/submission/smtpd[8833]: warning: vps-4029382.tiagob ...
show more
2026-09-12T08:56:37.699564 mail-honeypot postfix/submission/smtpd[8833]: warning: vps-4029382.tiagobrito.com.br[162.241.54.84]: SASL PLAIN authentication failed: authentication failure
...
show less
Brute-Force