Anonymous
2026-08-23 04:26:00
(9 hours ago)
Multiple Violations by Bot
Port Scan
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-08-22 19:34:04
(18 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-admin-interface-probing
Web App Attack
Hacking
Anonymous
2026-08-22 14:15:35
(23 hours ago)
2026-08-22T16:15:10.289149+02:00 wordpress(www.wohnungsgenossenschaft.de)[3091643]: Blocked user en ...
show more
2026-08-22T16:15:10.289149+02:00 wordpress(www.wohnungsgenossenschaft.de)[3091643]: Blocked user enumeration attempt from 169.58.209.108
show less
Web Spam
Blog Spam
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 11:40:43
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): ...
show more
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:40:38.836830 2026] [security2:error] [pid 18342:tid 18342] [client 169.58.209.108:64114] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||greatchristianadventure.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "greatchristianadventure.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aomKtk_zpFxQWtcZVQ1b4gAAAAY"], referer: https://duckduckgo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-22 10:52:31
(1 day ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-08-22 09:53:11
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): ...
show more
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 05:53:08.057179 2026] [security2:error] [pid 22425:tid 22425] [client 169.58.209.108:51450] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rockinr.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rockinr.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aolxhFfUg70ctDOWHcGRpQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
COMAITE
2026-08-22 05:37:01
(1 day ago)
CMS (WordPress or Joomla) brute force attempt.
Web App Attack
Anonymous
2026-08-22 04:36:06
(1 day ago)
Bot / scanning and/or hacking attempts: POST /wp-login.php HTTP/1.1, GET /wp-admin/index.php HTTP/1. ...
show more
Bot / scanning and/or hacking attempts: POST /wp-login.php HTTP/1.1, GET /wp-admin/index.php HTTP/1.1, GET /wp-login.php?redirect_to=https%3A%2F%2Fstudioebenvloed.nl%
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 03:57:28
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): ...
show more
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 23:57:23.064546 2026] [security2:error] [pid 31300:tid 31300] [client 169.58.209.108:63889] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||priorityring.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "priorityring.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aokeI5Ry-2giFYx6eNT66wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-08-21 23:37:19
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-bf-wordpress_bf
Web App Attack
Brute-Force
๐ช๐ธ
alferez
2026-08-21 20:02:34
(1 day ago)
Multiple WP Login Attack
Hacking
Exploited Host
Web App Attack
๐ง๐ช
madeit
2026-08-21 20:00:14
(1 day ago)
Web App Attack
๐ง๐ช
cmbplf
2026-08-21 15:27:12
(1 day ago)
1.557 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-21 14:51:24
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): ...
show more
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 10:51:17.301008 2026] [security2:error] [pid 23989:tid 23989] [client 169.58.209.108:53090] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||uphillfarmvt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "uphillfarmvt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aohl5Z4w0eDNZQdGg9srigAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 14:03:51
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): ...
show more
(mod_security) mod_security (id:225170) triggered by 169.58.209.108 (vmi3522303.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 10:03:46.427080 2026] [security2:error] [pid 10260:tid 10260] [client 169.58.209.108:60744] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||coolcustomproducts.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "coolcustomproducts.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aohawtvu6Ear7Drpq8a70QAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack