๐บ๐ธ
TPI-Abuse
2026-02-26 16:50:51
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 11:50:42.481014 2026] [security2:error] [pid 14340:tid 14340] [client 193.37.33.65:34423] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chicmeow.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chicmeow.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaB54ud4mEbqnQFfkp_fSQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-26 16:16:46
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 11:16:39.974715 2026] [security2:error] [pid 22083:tid 22106] [client 193.37.33.65:49259] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||catishly.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "catishly.com"] [uri "/wp-login.php"] [unique_id "aaBx5-bOYs8oiUtyTS969gAAARE"], referer: https://catishly.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-26 15:29:38
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 10:29:31.420630 2026] [security2:error] [pid 14501:tid 14513] [client 193.37.33.65:34905] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||captechinc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "captechinc.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaBm2ybjtvN8Xky0eOUXMQAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-26 13:36:47
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 08:36:39.590402 2026] [security2:error] [pid 31243:tid 31243] [client 193.37.33.65:63437] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||randymcelroy.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "randymcelroy.com"] [uri "/wp-login.php"] [unique_id "aaBMZ4QRxbEEliuNP1Jz4wAAAAw"], referer: https://randymcelroy.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-26 11:52:15
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.37.33.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 06:52:08.915859 2026] [security2:error] [pid 27869:tid 27869] [client 193.37.33.65:33531] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bigislandhawaiirealestate.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bigislandhawaiirealestate.com"] [uri "/wp-login.php"] [unique_id "aaAz6PFUXDX6NwjXUYt4wAAAAAU"], referer: https://bigislandhawaiirealestate.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-02-25 09:23:30
(3 months ago)
2.125 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
๐ซ๐ฎ
gnom4ik
2026-02-22 03:14:07
(3 months ago)
ban-reviewer auto report; ip=193.37.33.65; scenario=http:scan; verdict=valid_ban; confidence=0.85; c ...
show more
ban-reviewer auto report; ip=193.37.33.65; scenario=http:scan; verdict=valid_ban; confidence=0.85; categories=14,15,18; active_decisions=1; lookback_decisions=1; nginx_requests=0; appsec_matches=0; auth_events=0; kernel_events=0; signals=IP flagged for 'Port Scan' (category 14) in abuseipdb context; Decision triggered by 'http:scan' scenario indicating scanning activity; IP has active decisions total of 1 within lookback window
show less
Port Scan
Hacking
Brute-Force
๐บ๐ธ
myagent.site
2026-02-13 04:55:57
(3 months ago)
Blocking for trying to access an exploit file: /version.php
Hacking
๐ณ๐ฟ
Antinson
2026-02-13 02:52:52
(3 months ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ฒ๐น
Malta
2026-02-12 19:39:54
(3 months ago)
193.37.33.65 - - [12/Feb/2026:20:39:54 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0"
Brute-forc ...
show more
193.37.33.65 - - [12/Feb/2026:20:39:54 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0"
Brute-force password attempt
show less
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-02-09 07:47:20
(3 months ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-02-09 04:39:54
(3 months ago)
wordpress-trap
Web App Attack
๐บ๐ธ
jcbriar
2026-01-05 23:15:46
(4 months ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐ฆ๐บ
MAGIC
2025-11-25 01:04:04
(6 months ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฒ๐น
Malta
2025-11-24 23:40:05
(6 months ago)
193.37.33.65 - - [25/Nov/2025:00:40:05 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0"
Brute-forc ...
show more
193.37.33.65 - - [25/Nov/2025:00:40:05 +0100] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0"
Brute-force password attempt
show less
Hacking
Brute-Force
Web App Attack