🇨🇦
Mediashaker
2026-09-07 18:55:17
(20 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 213.232.121.103 (RU/ ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 213.232.121.103 (RU/Russia/-)
show less
Bad Web Bot
🇨🇦
DRI
2026-07-31 05:40:22
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
🇨🇦
DRI
2026-07-26 12:10:43
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
🇨🇦
DRI
2026-07-20 20:08:08
(1 month ago)
Web attack/Malicious activity detected
Web App Attack
🇺🇸
kosada.com
2026-07-14 15:05:01
(1 month ago)
Web password guessing
Brute-Force
🇺🇸
cwytech
2026-07-14 06:13:34
(1 month ago)
Fleet-wide ban from the Ghostfleet 👻. Triggered by scenario: cwy/wordpress-xmlrpc-bf-high.
Bad Web Bot
Web App Attack
🇨🇭
backslash
2026-07-14 00:42:30
(1 month ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
🇺🇸
TPI-Abuse
2026-07-10 06:43:50
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 10 02:43:36.574763 2026] [security2:error] [pid 19299:tid 19299] [client 213.232.121.103:42085] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stormwlf.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stormwlf.com"] [uri "/wp-json/wp/v2/users"] [unique_id "alCUmDv1rKML5fWIMssc6wAAABQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
nationaleventpros.com
2026-06-15 00:14:33
(2 months ago)
WordPress login attempt
Brute-Force
🇺🇸
TPI-Abuse
2026-06-10 06:29:41
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 02:29:26.324728 2026] [security2:error] [pid 29273:tid 29273] [client 213.232.121.103:47629] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||opere.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "opere.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aikERpojXoyG3hZHDpeaFwAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
kosada.com
2026-06-09 14:06:44
(2 months ago)
Web password guessing
Brute-Force
Anonymous
2026-05-30 14:28:11
(3 months ago)
FPROCO WEBEXPLOIT 213.232.121.103 (213.232.121.103)
Web App Attack
🇺🇸
kosada.com
2026-05-30 13:21:25
(3 months ago)
Web password guessing
Brute-Force
🇺🇸
TPI-Abuse
2026-05-25 15:14:30
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 11:14:12.904774 2026] [security2:error] [pid 18742:tid 18742] [client 213.232.121.103:23293] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||exresearch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "exresearch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahRnRJ0YL4VoKKZ-y4pvJgAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-21 17:35:33
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.121.103 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 21 13:35:16.219117 2026] [security2:error] [pid 25728:tid 25764] [client 213.232.121.103:54093] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nrgla.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nrgla.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ag9CVNmPwUOboXegQDk1nQAAAEI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack