🇺🇸
TPI-Abuse
2026-05-19 06:35:50
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 02:35:43.699839 2026] [security2:error] [pid 13052:tid 13079] [client 2001:41d0:8:cc78:::34508] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.teritemme.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.teritemme.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agwEv0UxdEde-4HzCvZHrQAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Brict IT
2026-05-18 12:30:59
(3 months ago)
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-17 22:06:04
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 18:05:56.876663 2026] [security2:error] [pid 13577:tid 13577] [client 2001:41d0:8:cc78:::37544] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.rohanbyles.com.au|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.rohanbyles.com.au"] [uri "/wp-json/wp/v2/users"] [unique_id "ago7xKempajoP_QOuGoQGQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Lunix
2026-05-17 16:48:57
(3 months ago)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-05-17 08:39:47
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 04:39:43.367437 2026] [security2:error] [pid 1910:tid 1910] [client 2001:41d0:8:cc78:::56618] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.godcanuseyou.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.godcanuseyou.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agl-zy1ybd9DP6UH_6WKDwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-14 13:46:44
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 09:46:40.652721 2026] [security2:error] [pid 11114:tid 11114] [client 2001:41d0:8:cc78:::52636] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mikedeutsch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mikedeutsch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agXSQMmFc-VE9mf5jHEbQQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-14 11:41:01
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 07:40:57.879589 2026] [security2:error] [pid 21913:tid 21913] [client 2001:41d0:8:cc78:::59948] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tourissue.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tourissue.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agW0ySdp8Gm0EdqsZ1p_jQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-13 16:39:04
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 12:38:55.258810 2026] [security2:error] [pid 12347:tid 12347] [client 2001:41d0:8:cc78:::35226] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sharawi-gum.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sharawi-gum.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agSpH_YyyKtG0MXJ70_SyAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
SpaceHost-Server
2026-05-12 22:30:38
(4 months ago)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-05-12 19:25:27
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 15:25:23.274259 2026] [security2:error] [pid 14445:tid 14445] [client 2001:41d0:8:cc78:::47506] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.boaredraven.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.boaredraven.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agN-o-hzFHLfPbU2kl-rJwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-12 17:44:47
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 13:44:42.074024 2026] [security2:error] [pid 10522:tid 10522] [client 2001:41d0:8:cc78:::55392] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.manosentuayuda.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.manosentuayuda.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agNnCrlGDi6cg7BIqq5pxQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-12 14:06:00
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 12 10:05:53.866363 2026] [security2:error] [pid 22764:tid 22764] [client 2001:41d0:8:cc78:::58082] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||microkerneltechnologies.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "microkerneltechnologies.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agMzwSy2dQL7-2OsHcX5UQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
SpaceHost-Server
2026-05-11 22:29:08
(4 months ago)
Brute-Force
Web App Attack
🇫🇷
bazter.pro
2026-05-11 11:39:35
(4 months ago)
Fail2Ban: plesk-bot-aggressive - 15 failures
Port Scan
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-11 10:29:50
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 ...
show more
(mod_security) mod_security (id:225170) triggered by 2001:41d0:8:cc78:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 06:29:44.885573 2026] [security2:error] [pid 4676:tid 4676] [client 2001:41d0:8:cc78:::55828] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.peacecampus.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.peacecampus.org"] [uri "/wp-json/wp/v2/users"] [unique_id "agGvmJWQa3MP-l2pvc6aEwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack