๐บ๐ธ
TPI-Abuse
2026-06-16 04:06:01
(14 hours ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 00:05:53.670640 2026] [security2:error] [pid 27872:tid 27872] [client 2001:41d0:203:34e:::60301] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.doctorbalog.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.doctorbalog.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajDLoShv20444RIlyYOmmgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 22:55:03
(19 hours ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 18:54:54.992685 2026] [security2:error] [pid 31449:tid 31475] [client 2001:41d0:203:34e:::48780] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.campingcosmetics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.campingcosmetics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajCCvil-Gveiab15o2-5mAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 16:13:47
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 12:13:40.530059 2026] [security2:error] [pid 23090:tid 23090] [client 2001:41d0:203:34e:::58911] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.allotrope.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.allotrope.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai7TNIKddHvGK_EGcMXA1AAAAD4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 13:38:42
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 09:38:35.654434 2026] [security2:error] [pid 2809:tid 2809] [client 2001:41d0:203:34e:::48789] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.joeordie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.joeordie.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai1dW9P1mNBQKzlEinql8AAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 11:22:58
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 07:22:54.604051 2026] [security2:error] [pid 10256:tid 10256] [client 2001:41d0:203:34e:::56436] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.iee-usa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.iee-usa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ailJDmSuiCJk2c-q47lqWQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 13:53:26
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 09:53:18.325683 2026] [security2:error] [pid 20075:tid 20075] [client 2001:41d0:203:34e:::51042] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.daisydoesoap.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.daisydoesoap.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agnITrdTbE4AHOJTWDbKcAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-16 23:42:03
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 16 19:41:54.417961 2026] [security2:error] [pid 7858:tid 7858] [client 2001:41d0:203:34e:::56032] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.humbliaslaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.humbliaslaw.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agkAwoxy8D_SMOChfyfCWQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 06:54:34
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 02:54:28.351573 2026] [security2:error] [pid 17213:tid 17213] [client 2001:41d0:203:34e:::59467] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fritsknuf.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fritsknuf.com"] [uri "/blog/wp-json/wp/v2/users"] [unique_id "agQgJI7oFxjQgIpQF9v75QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-12 16:41:36
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:203:34e:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 12:41:29.200390 2026] [security2:error] [pid 2517:tid 2517] [client 2001:41d0:203:34e:::50894] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.airdriedrivingschool.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.airdriedrivingschool.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agNYOdDLdq7rFLhUrGPxewAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-03-11 23:01:32
(3 months ago)
Try to access /xmlrpc.php
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-03-07 15:09:38
(3 months ago)
Try to access /xmlrpc.php
Web App Attack
๐ฉ๐ช
Hazzard
2026-03-07 10:59:57
(3 months ago)
(wordpress) Failed wordpress login from 2001:41d0:203:34e:: (FR/France/-/-/-/[redacted]): (CF_ENABL ...
show more
(wordpress) Failed wordpress login from 2001:41d0:203:34e:: (FR/France/-/-/-/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ซ๐ฎ
stinpriza
2026-03-07 05:33:54
(3 months ago)
Web App Attack
Web App Attack
Anonymous
2026-03-06 20:47:17
(3 months ago)
2026-03-06T21:47:15.597253+01:00 aion wordpress[333349]: Blocked authentication attempt for admin fr ...
show more
2026-03-06T21:47:15.597253+01:00 aion wordpress[333349]: Blocked authentication attempt for admin from 2001:41d0:203:34e::
...
show less
Hacking
Brute-Force
๐ฉ๐ช
SCHAPPY
2026-03-06 12:57:13
(3 months ago)
Multiple attempts to attack Wordpress XMLRPC detected: access blocked.
Web App Attack