|
๐ฆ๐บ
oncord
|
|
Form spam
|
Web Spam
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:240335) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstr ...
show more
(mod_security) mod_security (id:240335) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstream.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 13 11:08:45.828596 2026] [security2:error] [pid 20830:tid 20830] [client 190.2.154.237:12746] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 190.2.154.237 (+1 hits since last alert)|assembliesofgodinsamoa.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "assembliesofgodinsamoa.org"] [uri "/xmlrpc.php"] [unique_id "aWZuDU6epjrnFA__UcuC5QAAACE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstr ...
show more
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstream.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 13 10:25:24.304943 2026] [security2:error] [pid 7377:tid 7377] [client 190.2.154.237:48434] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ardeeapps.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ardeeapps.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aWZj5H2efgA97CrIJtysVgAAAA0"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstr ...
show more
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstream.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 12 23:53:20.038262 2026] [security2:error] [pid 1217:tid 1217] [client 190.2.154.237:33982] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mccompu.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mccompu.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aWXPwEVhVFnu6vW2NlIDLQAAAAQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstr ...
show more
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstream.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 12 19:11:42.047428 2026] [security2:error] [pid 7341:tid 7341] [client 190.2.154.237:23328] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||justicehoward.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "justicehoward.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aWWNvr41vErZ7yewIuj0XAAAACM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ต๐ฑ
IROK
|
|
Malware/WebShell Scan blocked by ModSecurity
...
|
Hacking
|
|
|
๐ฉ๐ช
dbmwebdesign
|
|
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
|
Brute-Force
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstr ...
show more
(mod_security) mod_security (id:225170) triggered by 190.2.154.237 (190-2-154-237.hosted-by-worldstream.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 12 10:44:00.278904 2026] [security2:error] [pid 17197:tid 17197] [client 190.2.154.237:1875] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dymesich.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dymesich.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aWUWwCKRKPlPPwXVyfy3AgAAAAo"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ฉ๐ช
big-cloud.nl
|
|
Try to access /xmlrpc.php
|
Web App Attack
|
|
|
Anonymous
|
|
07-01-2026 11:31:27.1 ERROR util.AccessViolations - 190.2.154.237 report to fail2ban - action: block ...
show more
07-01-2026 11:31:27.1 ERROR util.AccessViolations - 190.2.154.237 report to fail2ban - action: block
...
show less
|
Hacking
Brute-Force
Bad Web Bot
|
|
|
๐ฎ๐ถ
iraq-web-design-safnah
|
|
.
|
Email Spam
VPN IP
Hacking
Bad Web Bot
Exploited Host
|
|
|
๐บ๐ธ
jhuisi
|
|
MailMan List Subscription Abuse
|
Web App Attack
|
|
|
๐ณ๐ฑ
exxos
|
|
Attacks with Bad user agents
|
Hacking
|
|