π¨π
backslash
2026-06-17 21:21:00
(5 days ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
π©πͺ
4server
2026-04-26 22:58:24
(1 month ago)
[MonApr2700:58:11.6096372026][security2:error][pid2690700:tid2690823][client213.232.123.44:0]ModSecu ...
show more
[MonApr2700:58:11.6096372026][security2:error][pid2690700:tid2690823][client213.232.123.44:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"www.agilityrossoblu.ch\"][uri\"/xmlrpc.php\"][unique_id\"ae6Yg73QP1GMqm2iGhmiDwAAAQw\"]
show less
Port Scan
Brute-Force
Web App Attack
πΊπΈ
ambor
2026-03-20 17:53:09
(3 months ago)
Honeypot access: WordPress admin access attempt. Path: /wp-login.php
Brute-Force
Web App Attack
π©πͺ
Packets-Decreaser.NET
2025-12-10 14:34:29
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
π¬π§
SilverZippo
2025-10-24 11:42:41
(7 months ago)
Web App Attack
Web App Attack
πΊπΈ
xmission.com
2025-10-24 02:27:11
(7 months ago)
213.232.123.44 - - [23/Oct/2025:20:27:10 -0600] "POST /wp-login.php HTTP/1.1" 200 2317 "https://dooc ...
show more
213.232.123.44 - - [23/Oct/2025:20:27:10 -0600] "POST /wp-login.php HTTP/1.1" 200 2317 "https://dooce.com/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/115.0.0.0 Safari/537.36 Edg/115.0.1901.203"
...
show less
Brute-Force
πΊπΈ
TPI-Abuse
2025-10-21 19:16:17
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 21 15:16:04.009218 2025] [security2:error] [pid 22422:tid 22422] [client 213.232.123.44:22971] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||maffiniandbearce.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "maffiniandbearce.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPfb9DNg4ISHYlYp8P7wKAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-10-21 11:13:54
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 21 07:13:37.852351 2025] [security2:error] [pid 15696:tid 15696] [client 213.232.123.44:55483] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||insidepublications.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "insidepublications.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPdq4WJiLQ2Sf-8YwHUvbgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-10-21 03:29:21
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 20 23:29:05.897900 2025] [security2:error] [pid 13941:tid 13941] [client 213.232.123.44:9829] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jolankagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jolankagroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPb-AR3ISNCudTpwEYiJGgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-10-18 15:29:23
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 213.232.123.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 18 11:29:10.303077 2025] [security2:error] [pid 6870:tid 6870] [client 213.232.123.44:55921] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||interiorsolutions-stuart.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "interiorsolutions-stuart.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPOyRrcNyiWYgio0z1ttNwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π·πΊ
sms.ru
2024-09-22 14:30:09
(1 year ago)
SMS pumping attack from foreign country
DDoS Attack
π©πͺ
SCHAPPY
2023-07-26 01:08:49
(2 years ago)
Mutliple attempts to access web resources unauthorized, HTTP code 403.
Web App Attack