๐บ๐ธ
octageeks.com
2026-01-11 05:06:49
(5 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
myagent.site
2026-01-08 15:28:54
(5 months ago)
Blocking for trying to access an exploit file: /xmlrpc.php
Hacking
๐ฎ๐ฉ
Burayot
2026-01-06 16:35:03
(5 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 184.168.106.3 (SG/Singapore/3.106.1 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 184.168.106.3 (SG/Singapore/3.106.168.184.host.secureserver.net): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-05 17:25:49
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver. ...
show more
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 05 12:25:42.739417 2026] [security2:error] [pid 2425:tid 2425] [client 184.168.106.3:46854] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.dorismitchell.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.dorismitchell.com"] [uri "/index.php/wp-json/wp/v2/users"] [unique_id "aVv0FvryNQrMsIzlS8ZlugAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
stinpriza
2026-01-04 05:53:53
(5 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
myagent.site
2026-01-01 02:53:56
(5 months ago)
Blocking for trying to access an exploit file: /xmlrpc.php
Hacking
Anonymous
2025-12-22 14:02:06
(5 months ago)
apache vulnerability scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-12 01:21:58
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver. ...
show more
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 11 20:21:51.413597 2025] [security2:error] [pid 6747:tid 6747] [client 184.168.106.3:33772] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.circulodesonido.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.circulodesonido.org"] [uri "/wp-json/wp/V2/users"] [unique_id "aTtuL9GFc777VgrymBzjQgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-11 19:47:35
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver. ...
show more
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 11 14:47:31.489604 2025] [security2:error] [pid 1226:tid 1226] [client 184.168.106.3:18718] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.oldworldfineantiques.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.oldworldfineantiques.com"] [uri "/wp-json/wp/v2/usErs"] [unique_id "aTsf04oAk7AjHT2pujUAJAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-11 15:45:17
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver. ...
show more
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 11 10:45:12.779527 2025] [security2:error] [pid 18434:tid 18434] [client 184.168.106.3:39414] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.alsetsystems.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.alsetsystems.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "aTrnCOk6a7T7bqQePYa8lAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-11 06:42:27
(6 months ago)
WordPress Brute Force
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-03 13:26:09
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver. ...
show more
(mod_security) mod_security (id:225170) triggered by 184.168.106.3 (3.106.168.184.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 08:26:03.039681 2025] [security2:error] [pid 1914:tid 1914] [client 184.168.106.3:57342] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pharmaceuticalsalescertifications.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pharmaceuticalsalescertifications.com"] [uri "/wp-json/wp/v2/users.json"] [unique_id "aQita3jff1enabO4gUkvkwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
mgarofano80
2025-10-08 03:29:08
(8 months ago)
Brute-Force
Web App Attack
๐ฆ๐บ
weblite
2025-10-07 13:16:20
(8 months ago)
WP_LOGIN_FAIL
Brute-Force
Web App Attack
๐บ๐ธ
myagent.site
2025-10-06 14:43:43
(8 months ago)
Blocking for trying to access an exploit file: /xmlrpc.php
Hacking