Anonymous
2026-06-24 09:31:16
(5 days ago)
RdpGuard detected brute-force attempt on RD-WEB
Brute-Force
๐ช๐ธ
librebit
2026-06-19 14:22:56
(1 week ago)
Brute force
Brute-Force
๐ฉ๐ช
Hazzard
2026-06-15 04:15:32
(2 weeks ago)
(wordpress) Failed wordpress login from 185.88.100.179 (RU/Russia/-/-/-/[redacted]): (CF_ENABLE)
Brute-Force
๐ฉ๐ช
Vegascosmetics
2026-04-29 21:50:17
(2 months ago)
Kingcopy(AI-IDS):IP does Multiple AWS Environment Abuse
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 12:35:51
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 08:35:44.414784 2026] [security2:error] [pid 2082:tid 2082] [client 185.88.100.179:26375] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||tankercontrol.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "tankercontrol.com"] [uri "/s3cmd.ini"] [unique_id "afH7ILqUZ8ZX0ixt--ENiAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 08:18:01
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 04:17:55.162745 2026] [security2:error] [pid 31739:tid 31739] [client 185.88.100.179:20415] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.blusottosopra.salvoni.org|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.blusottosopra.salvoni.org"] [uri "/s3cmd.ini"] [unique_id "afBtM3RPWi9XNudyi1EElAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-27 05:44:12
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 01:44:08.016413 2026] [security2:error] [pid 5441:tid 5441] [client 185.88.100.179:30405] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.alanbeckwith.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.alanbeckwith.com"] [uri "/s3cmd.ini"] [unique_id "ae73qGspOrGaFKIL1ckCQwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-26 03:41:44
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 23:41:38.999040 2026] [security2:error] [pid 20313:tid 20313] [client 185.88.100.179:33165] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||stressmyth.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stressmyth.com"] [uri "/s3cmd.ini"] [unique_id "ae2Jcjvip50_Q-GV6nyyjAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
applemooz
2026-04-01 08:40:05
(2 months ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2026-04-01 04:51:00
(2 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-25 18:49:29
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 14:49:21.065402 2026] [security2:error] [pid 23884:tid 23884] [client 185.88.100.179:16785] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pages4you.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pages4you.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acQuMet4WGVE7KO4Ju9HhgAAAIE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 12:47:29
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 08:47:21.245651 2026] [security2:error] [pid 27311:tid 27311] [client 185.88.100.179:36729] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||individualhealth.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "individualhealth.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ab6TWSRKZSHC6NeblxRMewAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Eldeberen
2026-03-20 06:07:54
(3 months ago)
Vulnerability scan attempt through HTTP protocol
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-18 22:42:12
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 185.88.100.179 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 18 18:42:09.694303 2026] [security2:error] [pid 23639:tid 23639] [client 185.88.100.179:35791] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||waggonerfinancial.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "waggonerfinancial.com"] [uri "/wp-json/wp/v2/users"] [unique_id "absqQbUJA4odVZGR7hkPfQAAABs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-03-17 06:42:09
(3 months ago)
WordPress login attempt
Brute-Force