๐ฉ๐ช
FD-IX
2026-10-01 22:45:54
(15 hours ago)
Brute-force login attack detected by WordPress firewall.
Brute-Force
Web App Attack
๐ฉ๐ช
4server
2026-08-27 13:01:42
(1 month ago)
[ThuAug2715:01:38.9108382026][security2:error][pid1216475:tid1216562][client193.151.189.143:0]ModSec ...
show more
[ThuAug2715:01:38.9108382026][security2:error][pid1216475:tid1216562][client193.151.189.143:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"feldenkraistherapy.ch\"][uri\"/xmlrpc.php\"][unique_id\"apA1MsHkxj3A0z5Wp5wLkwAAAMo\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-09 04:23:10
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 09 00:23:05.702183 2026] [security2:error] [pid 28764:tid 28932] [client 193.151.189.143:33223] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aafm.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aafm.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ak8iKfOvMKT8-UyubSD32QAAAck"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Tilellit.PRO
2026-06-28 06:59:11
(3 months ago)
Fail2Ban banned 193.151.189.143 for security violations in jail wp-armour. Log: 2026/06/28 06:59:11 ...
show more
Fail2Ban banned 193.151.189.143 for security violations in jail wp-armour. Log: 2026/06/28 06:59:11 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 193.151.189.143 | Target: wplogin" , client: 193.151.189.143, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
Anonymous
2026-05-04 02:52:11
(4 months ago)
FPROCO WEBEXPLOIT 193.151.189.143 (193.151.189.143)
Web App Attack
๐จ๐ญ
backslash
2026-04-27 08:51:00
(5 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-25 10:20:02
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 06:19:58.197483 2026] [security2:error] [pid 31922:tid 31922] [client 193.151.189.143:19073] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||glolady.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "glolady.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeyVTrcz3-MZC7b8Kz9xNQAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-17 23:12:12
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 17 19:12:06.978107 2026] [security2:error] [pid 1007705:tid 1007705] [client 193.151.189.143:37681] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||metalgecko.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "metalgecko.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeK-Rq_nfJ0J1xfmcEd5dAAAABM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-17 11:14:22
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 17 07:14:15.352331 2026] [security2:error] [pid 482932:tid 482932] [client 193.151.189.143:19837] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sipkg.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sipkg.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeIWB6ISbTELlxtRSl8VXgAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-13 22:22:28
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 18:22:20.095164 2026] [security2:error] [pid 1136591:tid 1136591] [client 193.151.189.143:49365] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zodiacwin.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zodiacwin.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ad1snBAmm4RJKMo4yUnHiwAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-04-02 00:35:32
(6 months ago)
1.608 requests with url.path */xmlrpc.php
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-25 20:19:03
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 16:18:57.317050 2026] [security2:error] [pid 15191:tid 15191] [client 193.151.189.143:34681] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||barriebrown.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "barriebrown.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acRDMWcQsbj1Cb1CClyCJgAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-22 15:49:40
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 22 11:49:33.439516 2026] [security2:error] [pid 30898:tid 30898] [client 193.151.189.143:57389] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||miszewski.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "miszewski.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acAPjYA5RvrBRhXVhpsKMgAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-22 14:25:05
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.151.189.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 22 10:24:56.282503 2026] [security2:error] [pid 11337:tid 11337] [client 193.151.189.143:34293] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||intercite.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "intercite.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ab_7uGnDrmdWtNQLHWgBQgAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
IROK
2026-03-20 13:43:25
(6 months ago)
Firewall Blocked - Unauthorized Port Scanning
...
Port Scan