๐บ๐ธ
TPI-Abuse
2026-06-03 14:27:05
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 10:27:00.728965 2026] [security2:error] [pid 1654:tid 1654] [client 173.247.244.229:52436] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.texascottagebakers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.texascottagebakers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiA5tCEKalb3xRwbHit17QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 22:32:38
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 18:32:33.735671 2026] [security2:error] [pid 459:tid 459] [client 173.247.244.229:40954] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.keychainfilms.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.keychainfilms.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah9aAejjf-7_VuCvvpO7KQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 19:50:37
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 15:50:31.640647 2026] [security2:error] [pid 826:tid 826] [client 173.247.244.229:56234] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||realdoctorstories.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "realdoctorstories.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah3ih_yPXHO9ZhmiXSXO_wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-31 19:40:33
(3 weeks ago)
[redacted] 173.247.244.229 - - [31/May/2026:21:40:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" ...
show more
[redacted] 173.247.244.229 - - [31/May/2026:21:40:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0"
[redacted] 173.247.244.229 - - [31/May/2026:21:40:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:84.0) Gecko/20100101 Firefox/84.0"
[redacted] 173.247.244.229 - - [31/May/2026:21:40:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:45.0) Gecko/20100101 Firefox/45.0"
[redacted] 173.247.244.229 - - [31/May/2026:21:40:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55.0"
[redacted] 173.247.244.229 - - [31/May/2026:21:40:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:48.0) Gecko/20100101 Firefox/48.0"
[redacted] 173.247.244.2
...
show less
Hacking
Web App Attack
Anonymous
2026-05-30 10:23:03
(3 weeks ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1, GET /wp-json/wp/v2/users HTTP/1.1 ...
show more
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1, GET /wp-json/wp/v2/users HTTP/1.1, POST /wp-login.php HTTP/1.1, GET /?author=1 HTTP/1.1, GET /wp-login.php HTTP/1.1, GET /author/mamarazzi/ HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-30 05:25:38
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 01:25:29.654760 2026] [security2:error] [pid 28840:tid 28840] [client 173.247.244.229:37194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mosheimlib.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mosheimlib.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ahp0ybF9k0OlFZF2M0mKJwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 10:29:49
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 06:29:45.112723 2026] [security2:error] [pid 32715:tid 32715] [client 173.247.244.229:55776] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.comobarbershop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.comobarbershop.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahlqmUDZIoS5DxtmIKY7ywAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 17:43:26
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 13:43:18.678961 2026] [security2:error] [pid 26688:tid 26688] [client 173.247.244.229:46546] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.constructionloansfunding.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.constructionloansfunding.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahctNnEMI4VQUH8G2Gc9jgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 09:28:20
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 05:28:13.876386 2026] [security2:error] [pid 6960:tid 6960] [client 173.247.244.229:47310] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.asapstarsmogcheck.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.asapstarsmogcheck.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aha5LdiBiaAAHKENrOE8TwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-26 05:17:16
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 01:17:12.009249 2026] [security2:error] [pid 10871:tid 10871] [client 173.247.244.229:38480] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||superzilla.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "superzilla.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahUs2AGEDVLRkt2v5IX8bwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 20:27:20
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 16:27:13.886777 2026] [security2:error] [pid 24345:tid 24345] [client 173.247.244.229:41382] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.rochesterhistorical.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.rochesterhistorical.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ahSwoSWWvnmtF4E4CWPSOAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 20:02:00
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 16:01:55.234980 2026] [security2:error] [pid 7335:tid 7335] [client 173.247.244.229:36448] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pschitchat.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pschitchat.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahSqsxoRQXdbHTqGvNC0ywAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 15:20:58
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 11:20:49.892064 2026] [security2:error] [pid 21793:tid 21793] [client 173.247.244.229:33052] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fltsiminc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fltsiminc.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahRo0QwDCSRYQOnsFnMTiQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 04:13:21
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 00:13:14.843144 2026] [security2:error] [pid 2266:tid 2266] [client 173.247.244.229:33016] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.infinityartistsgroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.infinityartistsgroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahPMWldplNtMsvayfIPjewAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-24 18:20:36
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 173.247.244.229 (vps113543.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 14:20:28.964201 2026] [security2:error] [pid 24622:tid 24622] [client 173.247.244.229:44412] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||georgesmarina.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "georgesmarina.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahNBbI-AAacsNtUXioGoygAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack