๐บ๐ธ
TPI-Abuse
2026-06-20 02:40:42
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.stati ...
show more
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.static.cnode.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 22:40:36.620766 2026] [security2:error] [pid 21423:tid 21423] [client 163.44.198.34:38230] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bradleybarefoot.bbproductionsonline.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bradleybarefoot.bbproductionsonline.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajX9pCsQukAqKdmtDQFxBAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 22:15:45
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.stati ...
show more
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.static.cnode.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 18:15:40.417593 2026] [security2:error] [pid 25587:tid 25587] [client 163.44.198.34:40354] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||furbabieslivesmatter.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "furbabieslivesmatter.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajW_jN7ekPScC5uxbD06HQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-19 21:05:59
(1 day ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 20:29:31
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.stati ...
show more
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.static.cnode.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 16:29:23.220084 2026] [security2:error] [pid 2804:tid 2804] [client 163.44.198.34:33268] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||timetemple.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "timetemple.org"] [uri "/wp-json/wp/v2/users/8"] [unique_id "ajWmo36Z9mPFOxZyFdDpWgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-19 16:46:33
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
stinpriza
2026-06-19 10:04:12
(1 day ago)
Web App Attack
Web App Attack
๐ซ๐ท
masterguru
2026-06-18 00:47:37
(3 days ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 163.44.198.34 (TH/Thailand/v163-44-198-34.b00 ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 163.44.198.34 (TH/Thailand/v163-44-198-34.b001.p.bkk1.static.cnode.io): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
nyt
2026-06-15 01:27:24
(6 days ago)
Brute-Force, Web App Attack, suspicious: XMLRPC Attack
Brute-Force
Web App Attack
๐ซ๐ท
tilellit.pro
2026-06-14 17:42:43
(6 days ago)
Fail2Ban banned 163.44.198.34 for security violations in jail wp-armour. Log: 2026/06/14 17:42:42 [e ...
show more
Fail2Ban banned 163.44.198.34 for security violations in jail wp-armour. Log: 2026/06/14 17:42:42 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 163.44.198.34 | Target: wplogin" , client: 163.44.198.34, server: [REDACTED], request: "POST /wp-login.php HTTP/2.0", upstream: [REDACTED], host: [REDACTED], referrer: "https://espsformacion.com/wp-login.php"
...
show less
Web Spam
Anonymous
2026-06-14 08:25:08
(6 days ago)
163.44.198.34 - - [14/Jun/2026:16:25:07 +0800] "POST /xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 ...
show more
163.44.198.34 - - [14/Jun/2026:16:25:07 +0800] "POST /xmlrpc.php HTTP/1.1" 200 401 "-" "Mozilla/5.0 (X11; CrOS x86_64 14541.0.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-06-14 08:17:09
(6 days ago)
(wordpress) Failed wordpress login from 163.44.198.34 (TH/Thailand/Bangkok/Bangkok/v163-44-198-34.b0 ...
show more
(wordpress) Failed wordpress login from 163.44.198.34 (TH/Thailand/Bangkok/Bangkok/v163-44-198-34.b001.p.bkk1.static.cnode.io/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ฒ๐น
Malta
2026-06-14 04:32:19
(1 week ago)
163.44.198.34 - - [14/Jun/2026:06:32:19 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows N ...
show more
163.44.198.34 - - [14/Jun/2026:06:32:19 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-13 23:28:34
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.stati ...
show more
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.static.cnode.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 19:28:28.210281 2026] [security2:error] [pid 7338:tid 7338] [client 163.44.198.34:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.southernbroadcast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.southernbroadcast.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ai3nnFQecVU4OEZM9DA-IgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 07:14:22
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.stati ...
show more
(mod_security) mod_security (id:225170) triggered by 163.44.198.34 (v163-44-198-34.b001.p.bkk1.static.cnode.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 03:14:16.294286 2026] [security2:error] [pid 23962:tid 24067] [client 163.44.198.34:37320] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.teddysdeli.omegaoak.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.teddysdeli.omegaoak.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai0DSBTpWPcdld_zZTAHlQAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-13 04:20:31
(1 week ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack