๐บ๐ธ
mnsf
2026-06-24 02:33:29
(45 minutes ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 01:48:09
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 21:48:04.464814 2026] [security2:error] [pid 14809:tid 14809] [client 192.154.96.150:55978] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mkdesignndetailing.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mkdesignndetailing.com"] [uri "/wp-json/wp/v2/users/7"] [unique_id "ajs3VLDt-s2Ndo2usOo1vQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 23:32:10
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 19:32:03.755863 2026] [security2:error] [pid 15306:tid 15317] [client 192.154.96.150:53518] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||104ventures.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "104ventures.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajsXc3eIWisvCEVXlaoNywAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 22:05:26
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 18:05:20.921564 2026] [security2:error] [pid 25909:tid 25909] [client 192.154.96.150:59836] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.benkatkin.passy.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.benkatkin.passy.us"] [uri "/wp-json/wp/v2/users"] [unique_id "ajsDIBflx8wdGkihe4OJKQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 19:36:47
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 15:36:42.752515 2026] [security2:error] [pid 19941:tid 19941] [client 192.154.96.150:41422] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tttns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tttns.com"] [uri "/wp-json/wp/v2/users/8"] [unique_id "ajrgSh906iWIg7mVftz56wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 18:17:58
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 192.154.96.150 (bravo.bdnameserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 14:17:54.914683 2026] [security2:error] [pid 16440:tid 16440] [client 192.154.96.150:40848] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||casapapayasanmiguel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "casapapayasanmiguel.com"] [uri "/wp-json/wp/v2/users/4"] [unique_id "ajrN0mv3ZVS3CuK3Pf-yRAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-06-17 10:10:36
(6 days ago)
(y4) Failed scan -byebye- from 192.154.96.150 (US/United States/bravo.bdnameserver.com): (CF_ENABLE ...
show more
(y4) Failed scan -byebye- from 192.154.96.150 (US/United States/bravo.bdnameserver.com): (CF_ENABLE)
show less
Hacking
๐จ๐ฟ
ptlab
2026-06-17 00:45:23
(1 week ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-16 16:01:12
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-06-16 14:52:04
(1 week ago)
Wordfence waf block on uvfousor WPIDD
Web App Attack
๐ธ๐ฐ
EVISION
2026-05-30 05:39:00
(3 weeks ago)
Email Spam
Spoofing
Phishing
๐บ๐ธ
myagent.site
2025-11-30 06:49:54
(6 months ago)
Blocking for trying to access an exploit file: /xmlrpc.php
Hacking
๐ณ๐ฑ
rroethof
2025-11-29 15:40:11
(6 months ago)
(XMLRPC) WP XMLPRC Attack 192.154.96.150 (US/United States/bravo.hosttier.com): 5 in the last 3600 s ...
show more
(XMLRPC) WP XMLPRC Attack 192.154.96.150 (US/United States/bravo.hosttier.com): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_CUSTOMTRIGGER; Logs: 192.154.96.150 - - [29/Nov/2025:16:40:01 +0100] "POST /xmlrpc.php HTTP/2.0" 403 131 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; Trident/7.0; Touch; TNJB; rv:11.0) like Gecko"
192.154.96.150 - - [29/Nov/2025:16:40:03 +0100] "POST /xmlrpc.php HTTP/2.0" 403 131 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; Trident/7.0; Touch; TNJB; rv:11.0) like Gecko"
192.154.96.150 - - [29/Nov/2025:16:40:04 +0100] "POST /xmlrpc.php HTTP/2.0" 403 131 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; Trident/7.0; Touch; TNJB; rv:11.0) like Gecko"
192.154.96.150 - - [29/Nov/2025:16:40:06 +0100] "POST /xmlrpc.php HTTP/2.0" 403 131 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; Trident/7.0; Touch; TNJB; rv:11.0) like Gecko"
192.154.96.150 - - [29/Nov/2025:16:40:08 +0100] "POST /xmlrpc.php HTTP/2.0" 403 131 "-" "Mozilla/5.0 (Windows NT 6.3; WOW64; Trident/7.0; Touch; TNJB; rv:11.0) like Gecko"
show less
Spoofing
Brute-Force
Bad Web Bot
Web App Attack
SSH
๐บ๐ธ
myagent.site
2025-11-28 23:18:25
(6 months ago)
Blocking for trying to access an exploit file: /xmlrpc.php
Hacking
๐ง๐ช
taivas.nl
2025-11-28 04:32:13
(6 months ago)
Wordpress_xmlrpc_attack
Bad Web Bot