๐ฉ๐ช
netclix.gr
2026-06-21 13:22:52
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 20.124.82.131 (US/United States/-): (C ...
show more
(mod_security) mod_security triggered on hostname [redacted] 20.124.82.131 (US/United States/-): (CF_ENABLE)
show less
SQL Injection
๐ฉ๐ช
netclix.gr
2026-06-21 08:53:22
(11 hours ago)
(wordpress) Failed wordpress login from 20.124.82.131 (US/United States/-): (CF_ENABLE)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-21 06:54:22
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 02:54:17.479018 2026] [security2:error] [pid 29372:tid 29372] [client 20.124.82.131:60284] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.campos.tv|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.campos.tv"] [uri "/wp-json/wp/v2/users"] [unique_id "ajeKmWCUXTsXWRiSd5sC9QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 01:37:53
(18 hours ago)
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 20 21:37:50.123881 2026] [security2:error] [pid 23123:tid 23123] [client 20.124.82.131:40912] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jellisonrepair.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jellisonrepair.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajdAbjtDru5hN8ugNSj1hQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-21 00:59:21
(19 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-06-20 22:16:22
(22 hours ago)
[redacted] 20.124.82.131 - - [21/Jun/2026:00:16:21 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "M ...
show more
[redacted] 20.124.82.131 - - [21/Jun/2026:00:16:21 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:67.0) Gecko/20100101 Firefox/67.0"
[redacted] 20.124.82.131 - - [21/Jun/2026:00:16:21 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55.0"
[redacted] 20.124.82.131 - - [21/Jun/2026:00:16:21 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:62.0) Gecko/20100101 Firefox/62.0"
[redacted] 20.124.82.131 - - [21/Jun/2026:00:16:21 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:84.0) Gecko/20100101 Firefox/84.0"
[redacted] 20.124.82.131 - - [21/Jun/2026:00:16:21 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:65.0) Gecko/20100101 Firefox/65.0"
[redacted] 20.124.82.131 - - [21/J
...
show less
Hacking
Web App Attack
๐ฉ๐ช
R.G.
2026-06-14 14:39:48
(1 week ago)
(WPLOGINorWHATEVER) Get lost please 20.124.82.131 (US/United States/-): 7 in the last 600 secs; Port ...
show more
(WPLOGINorWHATEVER) Get lost please 20.124.82.131 (US/United States/-): 7 in the last 600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 00:53:21
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 20:53:13.284300 2026] [security2:error] [pid 29660:tid 29660] [client 20.124.82.131:52028] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.christaylorjazzpianist.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.christaylorjazzpianist.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai37eTQFpdy3chL-ah-9TAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 23:49:38
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 19:49:32.220677 2026] [security2:error] [pid 14494:tid 14625] [client 20.124.82.131:41290] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.amazinglips.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.amazinglips.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai3sjHwNAJmkSZ1YYgOmWwAAANA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
rsiddall
2026-06-13 12:15:49
(1 week ago)
20.124.82.131 - - [13/Jun/2026:08:15:48 -0400] "POST /xmlrpc.php HTTP/1.1" 403 1809 "-" "Mozilla/5.0 ...
show more
20.124.82.131 - - [13/Jun/2026:08:15:48 -0400] "POST /xmlrpc.php HTTP/1.1" 403 1809 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:58.0) Gecko/20100101 Firefox/58.0"
20.124.82.131 - - [13/Jun/2026:08:15:48 -0400] "POST /xmlrpc.php HTTP/1.1" 403 1809 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55.0"
...
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-13 05:27:48
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 01:27:41.670694 2026] [security2:error] [pid 26724:tid 26724] [client 20.124.82.131:51394] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.aroilcontrolsystem.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.aroilcontrolsystem.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aizqTajyVDKPbkJ4W81jTQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 01:30:35
(1 week ago)
[redacted] 20.124.82.131 - - [08/Jun/2026:03:30:26 +0200] "POST /xmlrpc.php HTTP/1.1" 200 230 "-" "M ...
show more
[redacted] 20.124.82.131 - - [08/Jun/2026:03:30:26 +0200] "POST /xmlrpc.php HTTP/1.1" 200 230 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:41.0) Gecko/20100101 Firefox/41.0"
[redacted] 20.124.82.131 - - [08/Jun/2026:03:30:27 +0200] "POST /xmlrpc.php HTTP/1.1" 200 230 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:97.0) Gecko/20100101 Firefox/97.0"
[redacted] 20.124.82.131 - - [08/Jun/2026:03:30:27 +0200] "POST /xmlrpc.php HTTP/1.1" 200 230 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:86.0) Gecko/20100101 Firefox/86.0"
[redacted] 20.124.82.131 - - [08/Jun/2026:03:30:28 +0200] "POST /xmlrpc.php HTTP/1.1" 200 230 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:57.0) Gecko/20100101 Firefox/57.0"
[redacted] 20.124.82.131 - - [08/Jun/2026:03:30:29 +0200] "POST /xmlrpc.php HTTP/1.1" 200 230 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:67.0) Gecko/20100101 Firefox/67.0"
[redacted] 20.124.82.131 - - [08/Jun/2026:03:30:30 +0200] "POST /xmlrpc.php HTTP/1.1" 200 230
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-07 23:23:03
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-07 16:54:10
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 12:54:04.483407 2026] [security2:error] [pid 350:tid 350] [client 20.124.82.131:57152] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kulacenterky.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kulacenterky.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiWiLAORk2d4QThJcCu6TAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 16:08:46
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 20.124.82.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 12:08:38.000267 2026] [security2:error] [pid 13797:tid 13797] [client 20.124.82.131:54472] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.brianwhitty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.brianwhitty.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiWXhYDD3mUI9JGExN7rUAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack