๐ฌ๐ง
Oakley
2026-07-21 14:10:18
(3 days ago)
(mod_security) mod_security (id:900178) triggered by 185.212.115.217 (US/United States/-): 5 in the ...
show more
(mod_security) mod_security (id:900178) triggered by 185.212.115.217 (US/United States/-): 5 in the last 900 secs
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-26 09:10:25
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 04:10:20.038222 2026] [security2:error] [pid 3257:tid 3257] [client 185.212.115.217:27217] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bonesband.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bonesband.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaAN_OWM_M5AT1irg9kCJQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-24 15:59:02
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 24 10:58:54.882538 2026] [security2:error] [pid 19913:tid 19913] [client 185.212.115.217:27065] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||4115thewestford.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "4115thewestford.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZ3Kvu2oSm9ozisyXzif7gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-21 04:04:57
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 20 23:04:51.978937 2026] [security2:error] [pid 15765:tid 15841] [client 185.212.115.217:38915] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||iacsb.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "iacsb.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZku4xE9zKk8TTnuV-tB-QAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-21 02:34:30
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 20 21:34:26.825829 2026] [security2:error] [pid 23632:tid 23632] [client 185.212.115.217:40069] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||realclean.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "realclean.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aZkZstRQ49Zv_yeFzWuTdgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-20 09:14:42
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 185.212.115.217 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 20 04:14:37.504186 2025] [security2:error] [pid 10119:tid 10143] [client 185.212.115.217:62399] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.managementlaw.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.managementlaw.com"] [uri "/uncategorized/hello-world/"] [unique_id "aUZo_Ymq3srKayUg7LsGvgAAABI"], referer: http://www.managementlaw.com/uncategorized/hello-world/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-01 01:20:57
(8 months ago)
wordpress-trap
Web App Attack
๐ซ๐ฎ
JimArchon72
2025-09-03 06:40:01
(10 months ago)
2025/09/03 06:37:46 "GET /wp-login.php HTTP/1.1"
Web App Attack
๐ฎ๐น
VHosting
2025-02-16 21:47:53
(1 year ago)
Attempt from 185.212.115.217, reason: FailedCaptchaVerify
DDoS Attack
Bad Web Bot