๐บ๐ธ
TPI-Abuse
2026-02-28 12:47:01
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 28 07:46:53.664327 2026] [security2:error] [pid 12494:tid 12494] [client 207.35.211.98:16486] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||casadelsolmexico.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "casadelsolmexico.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aaLjvU2kT4U1ggbh5_b7cgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-28 10:56:45
(3 months ago)
(wordpress) Failed wordpress login from 207.35.211.98 (CA/Canada/-)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-02-28 08:07:27
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 28 03:07:19.158901 2026] [security2:error] [pid 30890:tid 30890] [client 207.35.211.98:60484] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sneedvillefarmersmarket.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sneedvillefarmersmarket.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaKiN64J3px4Oqgx1TMC2gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-28 04:11:03
(3 months ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ฉ๐ช
LRob.fr
2026-02-28 03:45:10
(3 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-28 03:17:42
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 27 22:17:35.293174 2026] [security2:error] [pid 28911:tid 28911] [client 207.35.211.98:30484] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||innolympics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "innolympics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaJeTyiA_CPCcQs6kwEEJgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-28 02:34:26
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 27 21:34:19.316291 2026] [security2:error] [pid 2201:tid 2201] [client 207.35.211.98:47638] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ibermar.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ibermar.info"] [uri "/wp-json/wp/v2/users"] [unique_id "aaJUK3Pf6bwcUk2f1cK0zAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-27 23:44:26
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 207.35.211.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 27 18:44:22.059923 2026] [security2:error] [pid 4411:tid 4411] [client 207.35.211.98:16222] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||garantaconsulting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "garantaconsulting.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaIsVqH5469iovpRFAtI-gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-02-27 22:50:52
(3 months ago)
Unauthorized access to webpage admin
Web App Attack
Anonymous
2026-02-27 21:43:00
(3 months ago)
cms
Brute-Force
Web App Attack
Hacking
๐ง๐พ
lns.bz
2026-02-27 21:05:14
(3 months ago)
Banned for trying to access xmlrpc [BY]
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-02-27 20:56:03
(3 months ago)
Wordfence waf block on fairregistry
Web App Attack
๐ฉ๐ช
Hazzard
2026-02-27 16:15:01
(3 months ago)
(wordpress) Failed wordpress login from 207.35.211.98 (CA/Canada/Ontario/Toronto/-/[redacted]): (CF ...
show more
(wordpress) Failed wordpress login from 207.35.211.98 (CA/Canada/Ontario/Toronto/-/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
Penny Packer
2026-02-27 10:41:17
(3 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐ฌ๐ง
consul.to
2026-02-27 09:27:34
(3 months ago)
Web attack/malicious scanning detected
Web App Attack