🇬🇧
gigatech
2026-09-09 04:35:03
(2 days ago)
Webserver Probing
Web App Attack
🇲🇽
octageeks.com
2026-09-09 04:11:32
(2 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 04:07:36
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet ...
show more
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 00:07:28.480640 2026] [security2:error] [pid 8009:tid 8009] [client 185.194.151.187:5995] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||superlamb.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "superlamb.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDbgDfSGnrn_x5VA9Uy-QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 03:04:49
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet ...
show more
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 23:04:45.328484 2026] [security2:error] [pid 14950:tid 14950] [client 185.194.151.187:5985] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rootsofwellnessayurveda.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rootsofwellnessayurveda.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDMzf__ccdpRCgjO89EBwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
ISPLtd
2026-09-08 20:30:45
(2 days ago)
185.194.151.187 - - [08/Sep/2026:17:30:44 -0300] "GET /wp-login.php
185.194.151.187 - - [08/Sep/2026 ...
show more
185.194.151.187 - - [08/Sep/2026:17:30:44 -0300] "GET /wp-login.php
185.194.151.187 - - [08/Sep/2026:17:30:45 -0300] "POST /wp-login.php
...
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:46:12
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet ...
show more
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:46:07.276952 2026] [security2:error] [pid 12779:tid 12779] [client 185.194.151.187:5931] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hotelkona.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hotelkona.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBl_4dzkDIgwQjZkDGHWwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-08 18:07:24
(2 days ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-login.php | 2026-09-08 18:0 ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /wp-login.php | 2026-09-08 18:07 UTC
show less
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 15:17:59
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet ...
show more
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 11:17:55.910954 2026] [security2:error] [pid 31847:tid 31847] [client 185.194.151.187:6127] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||clcmillvale.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "clcmillvale.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAnI04DAnpXuCEE-KTg2gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 09:03:52
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet ...
show more
(mod_security) mod_security (id:225170) triggered by 185.194.151.187 (187-151-194-185.ip-addr.vsenet.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:03:46.518937 2026] [security2:error] [pid 11495:tid 11495] [client 185.194.151.187:5916] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tomartsmedia.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tomartsmedia.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_PcrcpoMikDcajSdi9_AAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
nationaleventpros.com
2026-09-08 08:14:42
(2 days ago)
WordPress login attempt
Brute-Force