πΊπΈ
TPI-Abuse
2025-07-29 14:56:15
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 29 10:56:08.655046 2025] [security2:error] [pid 29364:tid 29364] [client 2001:41d0:403:424b:::53920] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||7bsuperfruit.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "7bsuperfruit.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aIjhCNZrRuxcSZ0bSK-plAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-29 04:13:20
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 29 00:13:12.899659 2025] [security2:error] [pid 19836:tid 19836] [client 2001:41d0:403:424b:::57600] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||newcastle91.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "newcastle91.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aIhKWDHDvmvQ-WVgltsQfwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-28 17:21:39
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 28 13:21:35.073669 2025] [security2:error] [pid 2700615:tid 2700642] [client 2001:41d0:403:424b:::42514] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.rwabutaza.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.rwabutaza.com"] [uri "/login/wp-json/wp/v2/users"] [unique_id "aIexn9fkvJ0VO4DBd2P97gAAAdY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-28 10:40:58
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 28 06:40:52.418627 2025] [security2:error] [pid 2051:tid 2051] [client 2001:41d0:403:424b:::56654] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||themadwriter.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "themadwriter.us"] [uri "/wp-json/wp/v2/users"] [unique_id "aIdTtP6_D697jagY7aO7jQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
weblite
2025-07-28 08:24:24
(1 year ago)
WP_AUTHOR_SCANNING
Web App Attack
πΊπΈ
TPI-Abuse
2025-07-02 12:54:40
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 02 08:54:36.468725 2025] [security2:error] [pid 2952:tid 2952] [client 2001:41d0:403:424b:::57562] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.innolympics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.innolympics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aGUsDMFELWVbwCeNicIVYQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
stinpriza
2025-04-03 23:59:29
(1 year ago)
(XMLRPC) xmlrpc banned 2001:41d0:403:424b:: (FR/France/-): 1 in the last 3600 secs
Web App Attack
π©πͺ
on-com
2025-03-29 22:23:05
(1 year ago)
URL scan
Brute-Force
Web App Attack
π¨π
teamsecure
2025-03-29 01:46:50
(1 year ago)
Banned for trying to access wp-login
Web App Attack
π©πͺ
Hazzard
2025-03-24 06:44:56
(1 year ago)
(wordpress) Failed wordpress login from 2001:41d0:403:424b:: (FR/France/-/-/-/[redacted])
Brute-Force
π³π±
ParaBug
2025-03-23 12:05:41
(1 year ago)
2001:41d0:403:424b:: - - [23/Mar/2025:13:05:41 +0100] "POST /xmlrpc.php HTTP/1.1" 404 2959 "-" "Mozi ...
show more
2001:41d0:403:424b:: - - [23/Mar/2025:13:05:41 +0100] "POST /xmlrpc.php HTTP/1.1" 404 2959 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:61.0) Gecko/20100101 Firefox/61.0"
...
show less
Phishing
Brute-Force
Web App Attack
Anonymous
2025-02-20 12:20:01
(1 year ago)
| CMS (WordPress or Joomla) brute force attempt 10 times (rewritten)
Hacking
SQL Injection
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-19 07:47:56
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 19 02:47:53.198113 2025] [security2:error] [pid 3366643:tid 3366643] [client 2001:41d0:403:424b:::39610] [client 2001:41d0:403:424b::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.hvacmechanalysis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.hvacmechanalysis.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z7WMqbMub7gPFFRajymVkwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-02-18 22:24:00
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:403:424b:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 18 17:23:55.579046 2025] [security2:error] [pid 2738930:tid 2738930] [client 2001:41d0:403:424b:::45596] [client 2001:41d0:403:424b::] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.batesstrategygroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.batesstrategygroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z7UIe7Or1h1hMyFt51btNgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
SCHAPPY
2025-02-01 21:07:01
(1 year ago)
Wordpress attack: Submitted data to wp-login.php prior getting page content, attempt blocked. POST c ...
show more
Wordpress attack: Submitted data to wp-login.php prior getting page content, attempt blocked. POST counter 1 is greater than GET counter 0 for /wp-login.php by 2001:41d0:403:424b::.
show less
Web Spam