Anonymous
2026-08-22 21:45:37
(4 hours ago)
Multiple failed login attemps RDS-Web-Access-Server
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-22 11:40:02
(14 hours ago)
crowdsecurity/http-cve-probing
Brute-Force
Web App Attack
๐ช๐ธ
librebit
2026-08-20 07:02:17
(2 days ago)
Brute force
Brute-Force
๐จ๐ฆ
DRI
2026-07-30 23:38:56
(3 weeks ago)
Web attack/Malicious activity detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 23:09:28
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 19:09:22.948910 2026] [security2:error] [pid 692818:tid 692818] [client 170.168.173.196:27265] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aliamus.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aliamus.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amVCIgyDS4eNeBhcTtLa3gAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
DRI
2026-07-25 21:48:43
(4 weeks ago)
Web attack/Malicious activity detected
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-20 02:19:20
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐จ๐ฆ
DRI
2026-07-19 22:05:27
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
๐บ๐ธ
ambor
2026-07-19 03:26:53
(1 month ago)
Honeypot access: WordPress admin access attempt. Path: /wp-login.php
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 01:07:29
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 21:07:21.240599 2026] [security2:error] [pid 21425:tid 21425] [client 170.168.173.196:12979] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||halblog.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "halblog.com"] [uri "/wp-json/wp/v2/users"] [unique_id "almASafWI3S5CafHucXNDAAAABk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
DRI
2026-07-15 18:40:32
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
๐ฉ๐ช
stinpriza
2026-06-01 14:08:57
(2 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 07:14:30
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 03:14:25.987375 2026] [security2:error] [pid 3253:tid 3253] [client 170.168.173.196:29965] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wpwlv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wpwlv.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agGB0Xn7daN1C0irkwly8wAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 02:50:19
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 170.168.173.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 22:50:14.523819 2026] [security2:error] [pid 3352:tid 3352] [client 170.168.173.196:46319] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||vcmail.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "vcmail.net"] [uri "/wp-json/wp/v2/users"] [unique_id "adB8Zm4tDgCqzNUvpR34BwAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
www.winos.me
2026-03-08 21:14:48
(5 months ago)
Banned due to high error rate on HTTP/1.1 protocol
Brute-Force
Web App Attack