๐ฉ๐ช
rh24
2026-06-19 18:50:36
(4 hours ago)
(wordpress) Failed wordpress login from 181.14.210.149 (AR/Argentina/mx0.cisb.com.ar)
Brute-Force
๐ณ๐ฑ
Site.eu
2026-06-19 17:46:20
(5 hours ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-19 06:40:37
(16 hours ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 02:40:30.808450 2026] [security2:error] [pid 31415:tid 31415] [client 181.14.210.149:50752] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.sutherlandyogastudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.sutherlandyogastudio.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajTkXkgCYYyB44JWy0c2egAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-18 19:15:18
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-18 16:03:16
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 12:03:11.635316 2026] [security2:error] [pid 9726:tid 9726] [client 181.14.210.149:34310] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.rocksolidhomebuilders.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.rocksolidhomebuilders.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajQWv3bIh_FPUMB5S_R8dwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 10:35:45
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 06:35:39.300836 2026] [security2:error] [pid 12412:tid 12429] [client 181.14.210.149:56710] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pwihatah.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pwihatah.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajPJ-7vv-ZWpUYHjwVFT3wAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 04:32:06
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 00:32:00.547601 2026] [security2:error] [pid 12344:tid 12344] [client 181.14.210.149:48772] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fatbastardcompetition.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fatbastardcompetition.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajN0wG4jf7paK4C7PCQ2rgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-17 08:36:23
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-16 06:42:58
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 02:42:53.708190 2026] [security2:error] [pid 21913:tid 21913] [client 181.14.210.149:41240] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||learnserve.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "learnserve.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajDwbZ9Iz76shSS4a04gnAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 01:12:07
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 21:12:02.711179 2026] [security2:error] [pid 572:tid 572] [client 181.14.210.149:48748] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.doctoredwinalvarez.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.doctoredwinalvarez.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajCi4l49I14Ys6rBXRrk2QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 00:08:51
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 20:08:42.915232 2026] [security2:error] [pid 5420:tid 5564] [client 181.14.210.149:38774] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.metropaint.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.metropaint.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajCUCrYZJijA9GGYBgh34gAAARg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 21:06:45
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 17:06:37.539313 2026] [security2:error] [pid 4864:tid 4864] [client 181.14.210.149:54760] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.67ronin.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.67ronin.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajBpXSIj5ONCl83Vh5Np3QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 18:39:22
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 14:39:19.158641 2026] [security2:error] [pid 2705:tid 2705] [client 181.14.210.149:48982] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.kh6jim.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.kh6jim.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajBG1yUDdjB77p9ekiI-egAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-15 18:06:05
(4 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 16:26:01
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 181.14.210.149 (mx0.cisb.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 12:25:56.707537 2026] [security2:error] [pid 5529:tid 5529] [client 181.14.210.149:60634] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mikedeutsch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mikedeutsch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajAnlEDfTKqyXpzBI_R8rAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack