๐บ๐ธ
octageeks.com
2026-05-21 04:09:24
(3 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฎ๐น
[email protected]
2026-05-19 00:41:05
(3 months ago)
[Tue May 19 02:41:04.491882 2026] [authz_core:error] [pid 2604405:tid 2604503] [client 194.104.11.46 ...
show more
[Tue May 19 02:41:04.491882 2026] [authz_core:error] [pid 2604405:tid 2604503] [client 194.104.11.46:33593] AH01630: client denied by server configuration: /var/www/html/MyWeb/Wordpress_www/wp-login.php
show less
Brute-Force
Web App Attack
๐ฆ๐บ
oncord
2026-05-05 03:59:24
(4 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-04-14 12:11:33
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 14 08:11:27.621150 2026] [security2:error] [pid 1853976:tid 1853976] [client 194.104.11.46:62121] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ejnes.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ejnes.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ad4u7wFhht96Iqqnz817GgAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-09 16:54:55
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 09 12:54:46.910117 2026] [security2:error] [pid 3591216:tid 3591216] [client 194.104.11.46:23673] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||forinashgallery.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "forinashgallery.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adfZ1ngLMeUFoGPz-aEI_QAAABQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 00:22:53
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 20:22:46.478583 2026] [security2:error] [pid 2140959:tid 2140959] [client 194.104.11.46:59609] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gulftelecom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gulftelecom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adWf1jJCXqXNQSOGRlHXNgAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 11:21:12
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 07:21:07.753709 2026] [security2:error] [pid 11135:tid 11135] [client 194.104.11.46:10181] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||studioarmanni.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "studioarmanni.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adJFo1DGQPwRmwKQsSQM9wAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 09:09:34
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 05:09:27.585011 2026] [security2:error] [pid 7717:tid 7717] [client 194.104.11.46:13755] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ibcnu.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ibcnu.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adImx36xeVe09SvDBT_SbQAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2026-03-10 07:40:54
(5 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 194.104.11.46
2026-03-10T07:06:07+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 194.104.11.46
2026-03-10T07:06:07+01:00 vpn Access-Reject 'trina' station: 194.104.11.46 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-31 22:56:19
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.104.11.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 31 17:56:14.816192 2025] [security2:error] [pid 13240:tid 13240] [client 194.104.11.46:54121] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||digi-estudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "digi-estudio.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aVWqDjLXKcakA0mtFxNJiQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2025-12-26 12:15:10
(8 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
Anonymous
2025-06-13 23:09:00
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ซ๐ท
ecodehost.com
2025-03-13 02:43:04
(1 year ago)
Domain : tdstroygroup.ru
Rule : wp-login
2025-03-13 02:41:44 10.100.1.20 GET /wp-login.php - 443 - 1 ...
show more
Domain : tdstroygroup.ru
Rule : wp-login
2025-03-13 02:41:44 10.100.1.20 GET /wp-login.php - 443 - 194.104.11.46 HTTP/1.1 Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203 - tdstroygroup.ru 404 0 2 1403 276 3376 - -
show less
Web App Attack
๐ฌ๐ง
essinghigh
2024-07-22 15:31:03
(2 years ago)
1721662263 # Service_probe # SIGNATURE_SEND # source_ip:194.104.11.46 # dst_port:60000
...
Port Scan
Anonymous
2024-04-16 07:14:44
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH