๐ฉ๐ช
LRob.fr
2026-06-26 02:30:02
(2 days ago)
Repeated attacks detected by Fail2Ban in recidive jail
Hacking
๐บ๐ธ
lostswordfish.com
2026-06-25 21:24:03
(2 days ago)
Wordfence waf block on 1105merrystreet
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-25 04:15:11
(3 days ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 20:27:47
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 16:27:42.575811 2026] [security2:error] [pid 18746:tid 18746] [client 2001:41d0:305:2100::38e:44532] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.ruthbalser.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.ruthbalser.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ajrsPrB9Ct9lEpp-fAMOwAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 10:21:49
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 06:21:45.639226 2026] [security2:error] [pid 3317:tid 3317] [client 2001:41d0:305:2100::38e:60632] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.batesstrategygroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.batesstrategygroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajpeOWiK218fWPsBSP6xSgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-22 23:14:46
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 19:14:41.915454 2026] [security2:error] [pid 25904:tid 25904] [client 2001:41d0:305:2100::38e:41310] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.transcapitalsolutions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.transcapitalsolutions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajnB4UjSJ5GsPlfoYEqnVQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-22 15:10:59
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 11:10:55.439081 2026] [security2:error] [pid 24164:tid 24164] [client 2001:41d0:305:2100::38e:35794] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.prayers4america.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.prayers4america.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajlQf_Ov7HRiG-BnftGSzwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-22 00:42:30
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 20:42:23.035655 2026] [security2:error] [pid 22070:tid 22070] [client 2001:41d0:305:2100::38e:52660] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.abeltours.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.abeltours.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajiE79y4W7gYBMGBUhIHBAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-21 06:13:13
(1 week ago)
(wp_login_try) srv103 WP Login Attempt 2001:41d0:305:2100::38e (FR/France/-): 10 in the last 3600 se ...
show more
(wp_login_try) srv103 WP Login Attempt 2001:41d0:305:2100::38e (FR/France/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 20:19:21
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 16:19:13.362031 2026] [security2:error] [pid 7490:tid 7490] [client 2001:41d0:305:2100::38e:54334] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.hawaiireservations.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.hawaiireservations.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajWkQQ8SMVlW3wSmGmQV3AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 19:40:06
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 15:40:02.689518 2026] [security2:error] [pid 24819:tid 24819] [client 2001:41d0:305:2100::38e:41210] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.thingstodonude.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.thingstodonude.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajWbEtuyErIYHpOM0bhWfQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 17:33:57
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 13:33:51.004070 2026] [security2:error] [pid 25411:tid 25411] [client 2001:41d0:305:2100::38e:47418] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.badconsultingllc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.badconsultingllc.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajV9frykssdzaPuAPuAZ1AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-06-13 09:25:18
(2 weeks ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 02:37:54
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.n ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:305:2100::38e (vps-48c16ddf.vps.ovh.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 22:37:50.987124 2026] [security2:error] [pid 16449:tid 16482] [client 2001:41d0:305:2100::38e:49018] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.giere.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.giere.us"] [uri "/wp-json/wp/v2/users"] [unique_id "aitw_uxEspZ-j6QDIUOy-gAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
zam
2026-06-11 14:32:48
(2 weeks ago)
2001:41d0:305:2100::38e - - [11/Jun/2026:14:32:46 +0000] "POST /xmlrpc.php HTTP/1.1" 403 239
Web App Attack