Anonymous
2025-12-22 14:20:21
(8 months ago)
apache vulnerability scan
Web App Attack
๐ฉ๐ช
LRob
2025-12-13 05:16:43
(9 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2025-11-06 05:06:41
(10 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-05 08:52:57
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureser ...
show more
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 05 03:52:51.096881 2025] [security2:error] [pid 7893:tid 7893] [client 208.109.227.120:39842] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.themadwriter.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.themadwriter.us"] [uri "/wp-json/wp/v2/usErs"] [unique_id "aQsQYxh-e4gFd3bPEIK-sQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Voodoon229
2025-11-04 21:15:00
(10 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-04 21:04:51
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureser ...
show more
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 04 16:04:46.316256 2025] [security2:error] [pid 6055:tid 6055] [client 208.109.227.120:30408] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.puckerbikini.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.puckerbikini.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "aQpqbt0bv7ie13qtYJgibAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-03 18:16:35
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureser ...
show more
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 13:16:27.315657 2025] [security2:error] [pid 22870:tid 22870] [client 208.109.227.120:49392] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rotentendales.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rotentendales.com"] [uri "/wp-json/Wp/v2/users"] [unique_id "aQjxe5R-WnJawOwFqrwOpQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2025-11-03 15:47:53
(10 months ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-03 11:31:35
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureser ...
show more
(mod_security) mod_security (id:225170) triggered by 208.109.227.120 (120.227.109.208.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 06:31:31.000495 2025] [security2:error] [pid 20189:tid 20189] [client 208.109.227.120:32254] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jdeloa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jdeloa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aQiSkrUpRDCzMF-VEE8C-QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2025-11-03 05:07:58
(10 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ณ๐ฑ
Rey
2025-11-02 05:43:02
(10 months ago)
WordPress xmlrpc.php attack [93s0r2xp]
Web App Attack
๐ฉ๐ช
Hazzard
2025-11-02 02:49:55
(10 months ago)
(wordpress) Failed wordpress login from 208.109.227.120 (US/United States/-/-/120.227.109.208.host.s ...
show more
(wordpress) Failed wordpress login from 208.109.227.120 (US/United States/-/-/120.227.109.208.host.secureserver.net/[redacted])
show less
Brute-Force
๐ซ๐ท
tecnicorioja
2025-11-01 23:01:54
(10 months ago)
wp-login attack [01/Nov/2025:15:47:58
Brute-Force
Web App Attack
๐ณ๐ฑ
maxxsense
2025-10-06 23:56:05
(11 months ago)
(wordpress) Failed wordpress login from 208.109.227.120 (US/United States/120.227.109.208.host.secur ...
show more
(wordpress) Failed wordpress login from 208.109.227.120 (US/United States/120.227.109.208.host.secureserver.net)
show less
Brute-Force
๐ฉ๐ช
LRob
2025-08-11 10:15:13
(1 year ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack