๐ซ๐ท
dynamix
2025-11-29 22:18:08
(9 months ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2025-01-23 18:43:08
(1 year ago)
2025-01-23 @ 19:42:53 (CET) ~ Blocked for trying to access: /xmlrpc.php
Web App Attack
Anonymous
2025-01-23 04:34:13
(1 year ago)
(wordpress) Failed wordpress login from 165.22.248.126 (SG/Singapore/-)
Brute-Force
๐น๐ท
rtbh.com.tr
2025-01-19 20:50:39
(1 year ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐น๐ท
rtbh.com.tr
2025-01-18 20:50:42
(1 year ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-01-17 20:35:59
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 15:35:51.774913 2025] [security2:error] [pid 3343846:tid 3343846] [client 165.22.248.126:58650] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cabrynpoodles.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cabrynpoodles.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4q_Jwe3A4DxeYcrZvrtMgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 19:53:26
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 14:53:22.166096 2025] [security2:error] [pid 22513:tid 22513] [client 165.22.248.126:58267] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gdg1.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gdg1.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4q1Mq1FFSULDazG5oImcwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 19:16:40
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 14:16:35.859097 2025] [security2:error] [pid 6913:tid 6913] [client 165.22.248.126:58398] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||smart1services.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "smart1services.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4qskwYFtK5JDAvG-lr7QAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 18:56:12
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 13:56:06.726580 2025] [security2:error] [pid 9265:tid 9265] [client 165.22.248.126:59806] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dinkusdrums.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dinkusdrums.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4qnxlBDYRML31_pwlz4IgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 18:16:13
(1 year ago)
(mod_security) mod_security (id:240335) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 13:16:10.058493 2025] [security2:error] [pid 6762:tid 6762] [client 165.22.248.126:49198] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 165.22.248.126 (+1 hits since last alert)|soozebosire.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "soozebosire.com"] [uri "/xmlrpc.php"] [unique_id "Z4qeapRFZYCK2gdvWEdvEwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 17:59:51
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 12:59:46.374148 2025] [security2:error] [pid 17316:tid 17335] [client 165.22.248.126:54924] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||setxoccmed.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "setxoccmed.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4qakpH2Wc5aTllfetHjhgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 17:06:31
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 12:06:26.521819 2025] [security2:error] [pid 28575:tid 28603] [client 165.22.248.126:55188] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rosendalsateri.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rosendalsateri.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4qOEl9G-6lc3hJwmNAumAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 15:52:50
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 10:52:47.786862 2025] [security2:error] [pid 11163:tid 11163] [client 165.22.248.126:55647] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||centuryabsinthe.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "centuryabsinthe.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4p8z1b0ct7fn33jSAteMQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 15:06:12
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 10:06:06.601827 2025] [security2:error] [pid 21593:tid 21593] [client 165.22.248.126:51050] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||architx.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "architx.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4px3iUO9KB_yDoH8lNBtgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-17 14:25:12
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.22.248.126 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 17 09:25:06.413021 2025] [security2:error] [pid 2217311:tid 2217311] [client 165.22.248.126:53888] [client 165.22.248.126] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||schmeagle.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "schmeagle.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "Z4poQpOpoP2hAHLmjHrDtwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack