๐บ๐ธ
TPI-Abuse
2026-06-20 02:55:22
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 22:55:15.110393 2026] [security2:error] [pid 15956:tid 15956] [client 199.250.206.143:54304] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.greensandbeans.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.greensandbeans.us"] [uri "/wp-json/wp/v2/users"] [unique_id "ajYBE1HaUEtemsF2x3md3gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 11:19:16
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 07:19:09.212472 2026] [security2:error] [pid 1165:tid 1189] [client 199.250.206.143:43792] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.campingcosmetics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.campingcosmetics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajUlrcTppR3WJxxLpJwX8AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-12 09:48:48
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-11 11:30:51
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 07:30:45.829575 2026] [security2:error] [pid 21054:tid 21054] [client 199.250.206.143:52132] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.thesteeldrumman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.thesteeldrumman.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiqcZUfyHfbIgwZR_t6qtwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 04:59:34
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 00:59:28.534730 2026] [security2:error] [pid 18919:tid 18919] [client 199.250.206.143:53558] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.whodatnation.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.whodatnation.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aipAsPudDS2OKLAdmexR9wAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 23:38:26
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 19:38:20.858854 2026] [security2:error] [pid 27303:tid 27303] [client 199.250.206.143:38642] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theyoungstrategist.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theyoungstrategist.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ain1bGiub0AwYsHIL_qF_QAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 20:31:21
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 16:31:16.983423 2026] [security2:error] [pid 26940:tid 26940] [client 199.250.206.143:42184] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rwabutazafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rwabutazafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ainJlLpHJTTjrO4_zfUm1AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 19:34:25
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 15:34:22.505439 2026] [security2:error] [pid 15891:tid 15891] [client 199.250.206.143:39340] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.greatwesternfirearms.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.greatwesternfirearms.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aim8PlShj7pkmN1ClTXh8gAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 15:53:47
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 11:53:38.665549 2026] [security2:error] [pid 22431:tid 22431] [client 199.250.206.143:33416] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mariettacaseyclub.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mariettacaseyclub.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aimIguKd9G7Dn1qcOO8bUgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 07:09:24
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 03:09:20.234456 2026] [security2:error] [pid 6876:tid 6876] [client 199.250.206.143:34982] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.ohiohca.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.ohiohca.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aikNoNj1mfsswpdfHh8u1gAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 23:51:42
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 19:51:39.531375 2026] [security2:error] [pid 572:tid 572] [client 199.250.206.143:52070] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.lajoze.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.lajoze.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiinCzRGaLfCPMRNuX-2wAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 21:53:32
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 199.250.206.143 (vps131780.inmotionhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 17:53:27.447516 2026] [security2:error] [pid 22481:tid 22503] [client 199.250.206.143:44906] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gabegabel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gabegabel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiiLV6ZnD2iKTDZKE6tO0gAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack