π³π±
Site.eu
2026-06-14 11:59:18
(1 day ago)
Excessive multi-domain requests
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-14 04:54:10
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 00:54:02.042770 2026] [security2:error] [pid 8970:tid 8970] [client 217.160.225.18:60580] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.consolidatedoperationsgroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.consolidatedoperationsgroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai4z6eU1OxOjc62lH7Z8hAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π²π½
octageeks.com
2026-06-14 04:06:21
(2 days ago)
Wordpress malicious attack:[octawpauthor]
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 00:30:59
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 20:30:51.492121 2026] [security2:error] [pid 26406:tid 26406] [client 217.160.225.18:49398] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.blacksheepoffroad.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.blacksheepoffroad.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai32Ow9VEVxm_1NfMgBlbwAAADw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2026-06-14 00:02:05
(2 days ago)
2.552 requests from abuseipdb.com blacklisted IP (1yr4mos2w)
Brute-Force
Bad Web Bot
π³π±
Mangelot Hosting
2026-06-13 18:53:22
(2 days ago)
(wp_login_try) srv103 WP Login Attempt 217.160.225.18 (ES/Spain/-): 10 in the last 3600 secs; Ports: ...
show more
(wp_login_try) srv103 WP Login Attempt 217.160.225.18 (ES/Spain/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
π©πͺ
grassau.com
2026-06-13 17:39:41
(2 days ago)
(wordpress) Failed wordpress login from 217.160.225.18 (ES/Spain/-/-/-)
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-13 15:42:22
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 11:42:17.678890 2026] [security2:error] [pid 7010:tid 7010] [client 217.160.225.18:58982] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stacyfarm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stacyfarm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai16WRpe5pgmsaqQ55ZIfQAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-06-13 10:43:37
(2 days ago)
Excessive multi-domain requests
Brute-Force
π³π±
Mangelot Hosting
2026-06-13 07:09:35
(2 days ago)
(wp_login_try) srv101 WP Login Attempt 217.160.225.18 (ES/Spain/-): 10 in the last 3600 secs; Ports: ...
show more
(wp_login_try) srv101 WP Login Attempt 217.160.225.18 (ES/Spain/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 23:04:40
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 19:04:35.559305 2026] [security2:error] [pid 1169:tid 1169] [client 217.160.225.18:56944] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.crep-psych.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.crep-psych.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aiyQgzW3FPaz5G2Pcmbv_wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 17:09:21
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 13:09:13.997453 2026] [security2:error] [pid 7987:tid 7987] [client 217.160.225.18:35106] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.virtualmediamasters.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.virtualmediamasters.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aiw9ObYd6dmin8IbhIkT0wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 14:24:37
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 217.160.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 10:24:30.676279 2026] [security2:error] [pid 20499:tid 20499] [client 217.160.225.18:34656] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||campnecon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "campnecon.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiwWnhCm-3x0ouxMS-6_LgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΉπ
thaizone.com
2026-06-12 13:37:50
(3 days ago)
Brute Force Attack on a Web Application #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
π³π±
wlt-blocker
2026-06-12 12:28:21
(3 days ago)
Unauthorized access to webpage admin
Web App Attack