๐บ๐ธ
TPI-Abuse
2026-07-28 00:24:27
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 20:24:21.813327 2026] [security2:error] [pid 1734320:tid 1734320] [client 167.235.4.110:35524] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rajabarber.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rajabarber.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amf2tWx_L5RBFNFmYC7LAgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Security_Whaller
2026-07-27 20:33:57
(15 hours ago)
Malicious activity detected on Honeypot.
Brute-Force
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 19:51:59
(16 hours ago)
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:51:51.508468 2026] [security2:error] [pid 1133432:tid 1133432] [client 167.235.4.110:48234] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||futuresgrowhere.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "futuresgrowhere.com"] [uri "/index.php/wp-json/wp/v2/users"] [unique_id "ame215R-WMK4ptCfbLg7RAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-07-27 19:46:42
(16 hours ago)
levellapromotions.com.au:443 167.235.4.110 - - [28/Jul/2026:05:46:38 +1000] "GET /?author=3 HTTP/1.1 ...
show more
levellapromotions.com.au:443 167.235.4.110 - - [28/Jul/2026:05:46:38 +1000] "GET /?author=3 HTTP/1.1" 404 322938 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36, Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 19:06:45
(16 hours ago)
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:06:37.999025 2026] [security2:error] [pid 692458:tid 692458] [client 167.235.4.110:57220] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||restest.rayeliotschwartz.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "restest.rayeliotschwartz.com"] [uri "/wp/wp-json/wp/v2/users"] [unique_id "amesPYVwtDthBqnZfJqSngAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-27 15:53:06
(20 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 14:22:56
(21 hours ago)
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 10:22:49.958173 2026] [security2:error] [pid 175020:tid 175020] [client 167.235.4.110:35636] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thepinman.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thepinman.org"] [uri "/index.php/wp-json/wp/v2/users"] [unique_id "amdpuSNAFteeAm4ZdIcsFgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 13:10:25
(22 hours ago)
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in ...
show more
(mod_security) mod_security (id:225170) triggered by 167.235.4.110 (global.pasargadcloud.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 09:10:17.011532 2026] [security2:error] [pid 1390587:tid 1390587] [client 167.235.4.110:37354] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||odysseydogasporlari.com.handankoc.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "odysseydogasporlari.com.handankoc.net"] [uri "/wp/wp-json/wp/v2/users"] [unique_id "amdYufP9-aliAvD_K3c8WAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐น
Malta
2024-12-20 12:56:12
(1 year ago)
167.235.4.110 - - [20/Dec/2024:13:56:12 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows N ...
show more
167.235.4.110 - - [20/Dec/2024:13:56:12 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/129.0.0.0 Safari/537.36"
show less
Hacking
Web App Attack
๐ฎ๐น
LTM
2024-12-20 07:20:01
(1 year ago)
WebServer - Attempts to exploit
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
nationaleventpros.com
2024-12-19 21:56:10
(1 year ago)
WordPress login attempt
Brute-Force
๐ฉ๐ช
Tha_14
2024-12-19 17:19:47
(1 year ago)
Bad Web Bot
๐ฑ๐น
Evag Touf
2024-12-17 12:59:35
(1 year ago)
(wordpress) Failed wordpress login from 167.235.4.110 (DE/Germany/-): (CF_ENABLE)
Brute-Force
Anonymous
2024-12-17 05:05:04
(1 year ago)
Bot / scanning and/or hacking attempts: [1/1] done, POST /wp-login.php HTTP/2.0, [0/0] read: stream ...
show more
Bot / scanning and/or hacking attempts: [1/1] done, POST /wp-login.php HTTP/2.0, [0/0] read: stream 0, , POST /wp-login.php HTTP/1.1
show less
Hacking
Web App Attack
๐ฆ๐บ
MAGIC
2024-12-14 20:05:07
(1 year ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot