Anonymous
2025-08-09 14:08:21
(1 year ago)
wordpress-trap
Web App Attack
๐ซ๐ท
Nicolmn
2025-08-06 09:07:30
(1 year ago)
Web form spam ( id lxmmsyndc.l )
Web Spam
๐บ๐ธ
nationaleventpros.com
2025-07-29 15:34:43
(1 year ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-07-28 02:16:15
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 27 22:16:09.748204 2025] [security2:error] [pid 28744:tid 28744] [client 190.61.117.38:42697] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||primacomm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "primacomm.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aIbdacjggAzYCiO1-yw7YwAAAAw"], referer: https://primacomm.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-17 11:07:22
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 17 07:07:16.454092 2025] [security2:error] [pid 2214:tid 2214] [client 190.61.117.38:56107] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nekstlevel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nekstlevel.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aHjZZLjAU6VevL47Mbc9ZgAAAAI"], referer: https://nekstlevel.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-14 16:43:38
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 14 12:43:30.892686 2025] [security2:error] [pid 7454:tid 7454] [client 190.61.117.38:54260] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||staben.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "staben.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aHUzsi9OGsSV5mS0bvGW_wAAAAI"], referer: https://staben.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-04 07:06:29
(1 year ago)
ASWEEDCO WEBFORM SPAM 190.61.117.38 (38.117.61.190.ufinet.com.hn)
Web Spam
๐บ๐ธ
nowyouknow
2025-06-28 09:15:20
(1 year ago)
Phishing
Web Spam
๐ซ๐ท
Nicolmn
2025-06-23 12:33:26
(1 year ago)
Web form spam ( id fm.l )
Web Spam
๐บ๐ธ
TPI-Abuse
2025-06-23 09:49:16
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 23 05:49:10.728096 2025] [security2:error] [pid 3409128:tid 3409128] [client 190.61.117.38:34632] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||interiorsolutions-stuart.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "interiorsolutions-stuart.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aFkjFjk9Ih5OSsXCoRrPUwAAAAA"], referer: https://interiorsolutions-stuart.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2025-06-17 05:30:36
(1 year ago)
WP probing for vulnerabilities
Hacking
Exploited Host
๐ซ๐ท
Nicolmn
2025-06-06 14:20:15
(1 year ago)
Web form spam ( id t.l )
Web Spam
๐บ๐ธ
TPI-Abuse
2025-06-02 17:38:12
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 190.61.117.38 (38.117.61.190.ufinet.com.hn): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 02 13:38:08.093429 2025] [security2:error] [pid 1020762:tid 1020762] [client 190.61.117.38:41686] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aaattanasio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aaattanasio.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aD3hgGsWaLGOW0snq8sbXAAAAAI"], referer: https://aaattanasio.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-05-18 00:15:07
(1 year ago)
block ruleset 486D2EE5E731CC049D1E480D68D04DFFE28AADF1
Bad Web Bot
๐ฉ๐ช
zeitschel.net
2025-05-16 08:10:51
(1 year ago)
2025-05-16 10:10:45 Unauthorized /owa/auth.owa
Hacking
Web App Attack