Anonymous
2025-07-18 22:57:57
(10 months ago)
Malicious activity
Bad Web Bot
Web App Attack
๐บ๐ธ
DJ
2025-07-18 03:53:00
(10 months ago)
hacking
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-17 12:32:16
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 08:32:10.231643 2025] [security2:error] [pid 10671:tid 10671] [client 178.153.238.50:57399] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tracytappan.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tracytappan.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aHjtSoisHbyWl78SCQWa5AAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2025-07-17 11:38:18
(10 months ago)
Web App Attack
Web App Attack
๐จ๐ด
adalbertoreyes.org
2025-07-17 00:36:50
(10 months ago)
CategoryPortScan
Port Scan
๐ฉ๐ช
SCHAPPY
2025-07-16 21:58:30
(10 months ago)
Multiple attempts to attack Wordpress XMLRPC detected: access blocked.
Web App Attack
๐ฉ๐ช
Little Iguana
2025-07-16 16:32:55
(10 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐บ๐ธ
TPI-Abuse
2025-07-16 12:16:02
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 16 08:15:55.568173 2025] [security2:error] [pid 1591:tid 1591] [client 178.153.238.50:52817] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||twinls.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "twinls.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aHeX-5szFgSfZ4Gi10AHEQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-16 11:56:59
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 16 07:56:54.819466 2025] [security2:error] [pid 15091:tid 15091] [client 178.153.238.50:38597] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||enriquejezik.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "enriquejezik.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aHeThnbqEQs7N7wJiklh6QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-16 10:12:17
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 178.153.238.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 16 06:12:12.215954 2025] [security2:error] [pid 8473:tid 8473] [client 178.153.238.50:54710] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||faithlines.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "faithlines.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aHd6_Dc3XEMBhqqTHXBrBgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-16 08:31:01
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฆ๐บ
screwlooseit.com.au
2025-07-16 07:23:15
(10 months ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
QA/Qatar/-
Web App Attack
๐จ๐ญ
teamsecure
2025-07-16 04:07:17
(10 months ago)
Banned for trying to access xmlrpc
Web App Attack
Anonymous
2025-06-27 17:12:39
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฆ๐บ
screwlooseit.com.au
2025-06-27 14:07:29
(11 months ago)
Blocked by CSF 13 firewall - Rule: XMLRPC
QA/Qatar/-
Web App Attack