๐บ๐ธ
etu brutus
2026-06-21 16:33:55
(1 day ago)
200.80.43.223 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 10:39:23
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 06:39:16.519112 2026] [security2:error] [pid 17482:tid 17482] [client 200.80.43.223:43770] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lawrencehale.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lawrencehale.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aje_VKfbWMpUnwX-H2TO4AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-06-21 03:45:46
(1 day ago)
(wordpress) Failed wordpress login from 200.80.43.223 (AR/Argentina/Buenos Aires F.D./Buenos Aires/k ...
show more
(wordpress) Failed wordpress login from 200.80.43.223 (AR/Argentina/Buenos Aires F.D./Buenos Aires/kv7.toservers.com/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ฒ๐น
Malta
2026-06-20 23:58:04
(1 day ago)
200.80.43.223 - - [21/Jun/2026:01:58:04 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; CrOS ...
show more
200.80.43.223 - - [21/Jun/2026:01:58:04 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (X11; CrOS x86_64 14541.0.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force
๐ซ๐ท
masterguru
2026-06-20 10:54:49
(2 days ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 200.80.43.223 (AR/Argentina/kv7.toservers.com ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 200.80.43.223 (AR/Argentina/kv7.toservers.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
FeG Deutschland
2026-06-19 11:03:14
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 08:47:19
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 04:47:13.008527 2026] [security2:error] [pid 28636:tid 28636] [client 200.80.43.223:33916] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||airtechconsulting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "airtechconsulting.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ajUCER3U0kZtzXTRMvhm1wAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 16:47:49
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 12:47:46.203739 2026] [security2:error] [pid 22051:tid 22051] [client 200.80.43.223:52072] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stantontownship.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stantontownship.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ajLPssbsWs31F7INbhxltQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 10:02:28
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 06:02:21.349192 2026] [security2:error] [pid 18303:tid 18303] [client 200.80.43.223:39256] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||weird.eco|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "weird.eco"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ajJwrZGjJ3Vqkzl79ENCKwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 05:40:40
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 01:40:32.565846 2026] [security2:error] [pid 26235:tid 26235] [client 200.80.43.223:53114] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigheartskitchen.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigheartskitchen.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ajIzUObOkigIGADC3zwsiQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 23:12:52
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 200.80.43.223 (kv7.toservers.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 19:12:45.879637 2026] [security2:error] [pid 13893:tid 13893] [client 200.80.43.223:56602] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||desdier.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "desdier.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ajCG7XzpbbMkW_GrKrIPuwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
solution.it
2026-06-15 14:25:58
(1 week ago)
[Mon Jun 15 16:25:57.330274 2026] [php7:error] [pid 4124317:tid 4124317] [client 200.80.43.223:56548 ...
show more
[Mon Jun 15 16:25:57.330274 2026] [php7:error] [pid 4124317:tid 4124317] [client 200.80.43.223:56548] script '/var/www/html/blog.solution.it/wp-login.php' not found or unable to stat
show less
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-14 04:18:02
(1 week ago)
Wordpress malicious attack:[octaflood]
Web App Attack