🇺🇸
TPI-Abuse
2026-07-30 19:52:38
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 15:52:32.951920 2026] [security2:error] [pid 1851977:tid 1851995] [client 212.119.46.122:29229] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eliteproductions.tv|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eliteproductions.tv"] [uri "/wp-json/wp/v2/users"] [unique_id "amurgHPLAHM74sOXVEhjWQAAAA4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇦
DRI
2026-07-27 12:21:16
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
🇺🇸
TPI-Abuse
2026-07-26 06:33:06
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 02:32:59.824001 2026] [security2:error] [pid 2762369:tid 2762369] [client 212.119.46.122:31649] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mrbaystreet.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mrbaystreet.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amWqG0KB5t0f-UfPMs5t1QAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Bytemark
2026-07-19 01:20:42
(1 month ago)
212.119.46.122 - - [19/Jul/2026:02:20:42 +0100] "POST /xmlrpc.php HTTP/1.1" 404 6112 "-" "Apache-Htt ...
show more
212.119.46.122 - - [19/Jul/2026:02:20:42 +0100] "POST /xmlrpc.php HTTP/1.1" 404 6112 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)"
show less
Brute-Force
Web App Attack
🇨🇦
DRI
2026-07-18 00:25:39
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
🇺🇸
TPI-Abuse
2026-07-14 10:01:50
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 14 06:01:43.218942 2026] [security2:error] [pid 17469:tid 17469] [client 212.119.46.122:40923] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||harintonmechanical.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "harintonmechanical.com"] [uri "/wp-json/wp/v2/users"] [unique_id "alYJB0d2719qExpDzUFHsQAAAA0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
backslash
2026-07-09 18:48:00
(1 month ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
🇺🇸
TPI-Abuse
2026-03-27 13:54:46
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:54:40.881165 2026] [security2:error] [pid 17608:tid 17608] [client 212.119.46.122:28235] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rokket.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rokket.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acaMIKvOlEFeV-ulHDCMrwAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-27 02:34:06
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 22:33:58.725806 2026] [security2:error] [pid 9925:tid 9925] [client 212.119.46.122:61413] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cgautomatizacion.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cgautomatizacion.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acXsljHRkh-9gtkDSWrknAAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
Catapult
2026-03-18 06:04:00
(5 months ago)
Web App Attack
🇺🇸
TPI-Abuse
2026-03-16 09:05:11
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 212.119.46.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 16 05:05:05.036209 2026] [security2:error] [pid 9193:tid 9193] [client 212.119.46.122:48271] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kadimasecurity.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kadimasecurity.com"] [uri "/wp-json/wp/v2/users"] [unique_id "abfHwWI0TyHEg5gTQIt2LwAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
stinpriza
2026-03-14 21:43:58
(5 months ago)
Web App Attack
Web App Attack
🇫🇷
Tilellit.PRO
2026-02-14 06:12:10
(6 months ago)
Fail2Ban banned 212.119.46.122 for security violations in jail wp-armour. Log: 2026/02/14 06:12:10 [ ...
show more
Fail2Ban banned 212.119.46.122 for security violations in jail wp-armour. Log: 2026/02/14 06:12:10 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 212.119.46.122 | Target: wplogin" , client: 212.119.46.122, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
Anonymous
2025-12-14 07:01:30
(8 months ago)
Forum/form spam
Web Spam
Anonymous
2025-12-07 06:25:47
(9 months ago)
2025-12-07T08:25:47.152280+02:00 zanati wp(www.sahpa.co.za)[972811]: Blocked authentication attempt ...
show more
2025-12-07T08:25:47.152280+02:00 zanati wp(www.sahpa.co.za)[972811]: Blocked authentication attempt for [email protected] from 212.119.46.122
...
show less
Web App Attack