๐บ๐ธ
TPI-Abuse
2026-08-21 23:41:01
(30 minutes ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 19:40:54.262839 2026] [security2:error] [pid 18689:tid 18689] [client 2.29.6.9:57730] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||swinjury.co|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "swinjury.co"] [uri "/wp-json/wp/v2/users"] [unique_id "aojiBtNZyXgQDtD4z7ASZQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 20:16:11
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 16:16:02.964428 2026] [security2:error] [pid 9672:tid 9672] [client 2.29.6.9:27302] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theseventhcongregationofladderdayvixens.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theseventhcongregationofladderdayvixens.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aoiyAlNthV007wyP_VWWugAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-21 19:06:06
(5 hours ago)
Request Overload (137)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 18:57:52
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:57:45.740800 2026] [security2:error] [pid 1490:tid 1490] [client 2.29.6.9:47456] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fatcaverecords.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fatcaverecords.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoifqRO6aRaLemq-YNhqjwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-21 18:45:05
(5 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 18:30:56
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:30:50.710546 2026] [security2:error] [pid 18628:tid 18628] [client 2.29.6.9:27590] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cfmgroup.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cfmgroup.us"] [uri "/wp-json/wp/v2/users"] [unique_id "aoiZWr4-qM0ymUSrKDKDFQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 17:11:07
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 13:10:59.269156 2026] [security2:error] [pid 1280:tid 1280] [client 2.29.6.9:29618] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rimaine.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rimaine.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aoiGoxh-pfW7U5h4p_Lp2gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 16:44:42
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 12:44:37.057124 2026] [security2:error] [pid 13220:tid 13220] [client 2.29.6.9:16024] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||modestosoftwater.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "modestosoftwater.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoiAddzAurPxfjyYpKCkXwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 16:29:14
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 12:29:06.012652 2026] [security2:error] [pid 20309:tid 20309] [client 2.29.6.9:19574] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||joeordie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "joeordie.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoh80pgnYp78RCIpEsZbjgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-21 15:55:00
(8 hours ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 2.29.6.9 (FI/Finland/static.9.6.29.2.clients.y ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 2.29.6.9 (FI/Finland/static.9.6.29.2.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2.29.6.9 - - [21/Aug/2026:17:54:56 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 1988 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=etag.it
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-21 15:50:51
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.d ...
show more
(mod_security) mod_security (id:225170) triggered by 2.29.6.9 (static.9.6.29.2.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 11:50:45.359228 2026] [security2:error] [pid 14076:tid 14076] [client 2.29.6.9:40424] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||heatherweathers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "heatherweathers.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aohz1Z7T08XQ1qBjGvjurQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-21 15:09:03
(9 hours ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 2.29.6.9 (FI/Finland/static.9.6.29.2.clients.y ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 2.29.6.9 (FI/Finland/static.9.6.29.2.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 2.29.6.9 - - [21/Aug/2026:17:08:59 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 1988 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=etag.it
show less
Port Scan