๐ฌ๐ง
andypiper
2026-06-09 01:00:31
(1 week ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-06-09 00:16:10
(1 week ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 13:43:49
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 09:43:45.102562 2026] [security2:error] [pid 28718:tid 28718] [client 165.245.168.93:65222] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||crafft.cloudex.link|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "crafft.cloudex.link"] [uri "/wp-json/wp/v2/users/"] [unique_id "aibHEXsas4qL-vRy9aDfyQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-06-08 11:10:31
(1 week ago)
(wordpress) Failed wordpress login from 165.245.168.93 (US/United States/-): (CF_ENABLE)
Brute-Force
๐ฉ๐ช
LRob.fr
2026-06-08 09:30:05
(1 week ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2026-06-08 09:27:49
(1 week ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-08 08:07:33
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 04:07:25.859198 2026] [security2:error] [pid 4051:tid 4051] [client 165.245.168.93:56402] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cmcnow.cmcnow.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cmcnow.cmcnow.net"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiZ4Pckbh2sL924y3CIcAQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-08 07:55:59
(1 week ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-08 05:16:28
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 01:16:24.445390 2026] [security2:error] [pid 18966:tid 18966] [client 165.245.168.93:63816] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.cienmalos.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.cienmalos.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiZQKJjVo9yiJ97n2QT9VAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 04:25:18
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 00:25:10.002676 2026] [security2:error] [pid 28310:tid 28310] [client 165.245.168.93:60629] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chl.digitalsolutions.help|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chl.digitalsolutions.help"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiZEJT7S4TGedD5-2cVxJgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ณ
Zhengka.net
2026-06-08 03:47:22
(1 week ago)
zhengka.net security honeypot hit; jail=zhengka.net_honeypot; ip=165.245.168.93
Port Scan
Web App Attack
๐ซ๐ท
applemooz
2026-06-08 03:07:22
(1 week ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 02:36:35
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 22:36:28.192938 2026] [security2:error] [pid 18267:tid 18267] [client 165.245.168.93:53827] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cffragrances.iee-usa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cffragrances.iee-usa.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiYqrP1CAGdBEX2wp_m4-wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 01:51:31
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 165.245.168.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 21:51:25.148334 2026] [security2:error] [pid 2740:tid 2740] [client 165.245.168.93:62834] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cemesur-vision21.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cemesur-vision21.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aiYgHQENolU1raSs3rkSnQAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-08 01:04:28
(1 week ago)
Try to access /xmlrpc.php?rsd
Web App Attack