๐ณ๐ฑ
Site.eu
2026-06-19 07:11:30
(2 days ago)
Repeated wp-login/xmlrpc attempts
Brute-Force
SSH
๐ฏ๐ต
Valhalla
2026-06-19 03:50:31
(3 days ago)
/xmlrpc.php
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 18:55:55
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 14:55:50.493466 2026] [security2:error] [pid 13720:tid 13720] [client 206.84.62.42:63864] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||artspacecleveland.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "artspacecleveland.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ajQ_Nlwig5TUf6kuTUU_NwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-18 08:05:19
(3 days ago)
Unauthorized access to webpage admin
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-06-18 07:57:36
(3 days ago)
Probing websites for vulnerabilities
Web App Attack
Anonymous
2026-06-18 05:40:20
(4 days ago)
Attac
Brute-Force
๐ฉ๐ช
4server
2026-06-18 03:40:14
(4 days ago)
[ThuJun1805:40:12.6347752026][security2:error][pid106164:tid106180][client206.84.62.42:0]ModSecurity ...
show more
[ThuJun1805:40:12.6347752026][security2:error][pid106164:tid106180][client206.84.62.42:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"bno.ch\"][uri\"/xmlrpc.php\"][unique_id\"ajNonETMQGv-cDdtoKU_VAAAAI0\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
Mundo Bueno
2026-06-18 02:30:58
(4 days ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /xmlrpc.php | Pays: BR | UA: Mozilla/5.0 (Windows NT 6.2 ...
show more
[ISILIA Protection v2.1] Tentative d'accรจs: /xmlrpc.php | Pays: BR | UA: Mozilla/5.0 (Windows NT 6.2; arm64) AppleWebKit/537.36 (KHTML, like Gecko) Edge/89.0.0.0 Safari/537.
show less
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-06-18 00:50:48
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 12:21:14
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 08:21:07.991802 2026] [security2:error] [pid 10771:tid 10771] [client 206.84.62.42:63909] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fundaciondamashcc.org.ec|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fundaciondamashcc.org.ec"] [uri "/wp-json/wp/v2/users"] [unique_id "ajKRMwMC3S9paD_1ZNJHSwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 09:00:19
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 05:00:11.434921 2026] [security2:error] [pid 5758:tid 5758] [client 206.84.62.42:49346] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigholegolf.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigholegolf.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajJiGwHTKYsFW9N8IGEzGwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 04:53:24
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 00:53:17.253679 2026] [security2:error] [pid 21234:tid 21234] [client 206.84.62.42:65239] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||n4fh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "n4fh.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajIoPXF0W2ncBlqgqTt2vQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 20:43:34
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 16:43:27.249176 2026] [security2:error] [pid 21503:tid 21503] [client 206.84.62.42:55568] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||medusakenya.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "medusakenya.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajG1b_A-NYPS2es_24TbTQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 12:08:53
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): ...
show more
(mod_security) mod_security (id:225170) triggered by 206.84.62.42 (206.84.62.42.assistemas.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 08:08:46.126781 2026] [security2:error] [pid 10560:tid 10560] [client 206.84.62.42:61480] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||aroilcontrolsystem.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "aroilcontrolsystem.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajE8zvoF4QudqgyyyMP3RQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-16 03:54:40
(6 days ago)
Attac
Brute-Force