๐บ๐ธ
TPI-Abuse
2026-09-13 05:59:41
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 01:59:34.385954 2026] [security2:error] [pid 12018:tid 12018] [client 209.58.178.24:54194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||support.leonardodecaprio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "support.leonardodecaprio.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqY7xtwXOVW624QjzTh2xQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-09-13 04:49:45
(5 days ago)
2026-09-13T06:49:44.246391mail1.inartis.it postfix/smtpd[2007731]: warning: sg119.goodhostingserver. ...
show more
2026-09-13T06:49:44.246391mail1.inartis.it postfix/smtpd[2007731]: warning: sg119.goodhostingserver.com[209.58.178.24]: SASL PLAIN authentication failed: authentication failure, [email protected]
...
show less
Port Scan
Brute-Force
Anonymous
2026-09-13 04:31:47
(5 days ago)
Failed login attempt detected by Fail2Ban in plesk-postfix jail
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-13 03:43:34
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 23:43:30.738430 2026] [security2:error] [pid 12831:tid 12851] [client 209.58.178.24:46578] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fastesttrademark.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fastesttrademark.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqYb4ghqDHJhOjmNs-WfVAAAAQ0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-13 03:29:51
(5 days ago)
Aggressive scanning resulting into 404
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-13 02:20:48
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 22:20:41.846559 2026] [security2:error] [pid 6855:tid 6855] [client 209.58.178.24:40024] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tntserv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tntserv.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqYIee3QGs1xmSnoOyUd2wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-13 02:00:05
(5 days ago)
Detected mail brute force attack from different servers
Brute-Force
๐น๐ญ
thaizone.com
2026-09-13 01:52:07
(5 days ago)
High probability of spam (Score: 32.00)
Email Spam
๐น๐ญ
thaizone.com
2026-09-12 23:55:10
(6 days ago)
High probability of spam (Score: 38.00)
Email Spam
๐ฉ๐ช
NewGastroline
2026-09-12 23:02:26
(6 days ago)
Malicious request blocked by CrowdSec on gastro-prod1.boreus.de
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-12 20:19:18
(6 days ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users | 2026-09-12 20:19 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 17:14:21
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 209.58.178.24 (sg119.goodhostingserver.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 13:14:17.022441 2026] [security2:error] [pid 13575:tid 13575] [client 209.58.178.24:56606] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||brandoncomputergeeks.com.directcch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "brandoncomputergeeks.com.directcch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqWIaSVHjKd1lJf4tV3iDwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-12 13:53:57
(6 days ago)
cloudlinux2 fail2ban: 2026-09-12 15:49:42,891 fail2ban.filter [1606]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-12 15:49:42,891 fail2ban.filter [1606]: INFO [plesk-wordpress] Found 77.25.140.242 - 2026-09-12 15:49:42cloudlinux2 fail2ban: 2026-09-12 15:50:15,446 fail2ban.filter [1606]: INFO [plesk-modsecurity] Found 35.188.252.133 - 2026-09-12 15:50:15cloudlinux2 fail2ban: 2026-09-12 15:50:15,258 fail2ban.filter [1606]: INFO [plesk-modsecurity] Found 35.188.252.133 - 2026-09-12 15:50:15cloudlinux2 fail2ban: 2026-09-12 15:50:15,702 fail2ban.filter [1606]: INFO [recidive] Found 35.188.252.133 - 2026-09-12 15:50:15cloudlinux2 fail2ban: 2026-09-12 15:50:15,695 fail2ban.actions [1606]: NOTICE [plesk-modsecurity] Ban 35.188.252.133cloudlinux2 fail2ban: 2026-09-12 15:50:14,383 fail2ban.filter [1606]: INFO [plesk-modsecurity] Found 35.188.252.133 - 2026-09-12 15:50:14cloudlinux2 fail2ban: 2026-09-12 15:50:15,602 fail2ban.filter [1606]: INFO [plesk-modsecurity] Found 35.188.252.133 - 2026-09-12 15:50:15cloudlinux2 fail2ban: 20
show less
Web App Attack
Anonymous
2026-09-12 13:46:25
(6 days ago)
Web application attack detected.
Web App Attack
๐ฏ๐ต
fxxx2020
2026-09-12 13:40:00
(6 days ago)
SPAM
Email Spam