๐บ๐ธ
TPI-Abuse
2026-06-22 20:06:06
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 16:05:58.734010 2026] [security2:error] [pid 18728:tid 18728] [client 217.18.169.108:36402] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.forerunnersjazz.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.forerunnersjazz.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ajmVpiewWyHrqUwLrUelfAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-22 05:12:12
(23 hours ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 01:12:07.340783 2026] [security2:error] [pid 14648:tid 14648] [client 217.18.169.108:58504] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.thingstodonude.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.thingstodonude.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajjEJ2s0JULAM0pxVYji_QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-22 02:16:36
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 22:16:29.204588 2026] [security2:error] [pid 5606:tid 5606] [client 217.18.169.108:39594] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||buenasfrecuencias.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "buenasfrecuencias.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajia_QbV3k4L0RXFiPJoqwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 23:09:14
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 19:09:09.406960 2026] [security2:error] [pid 2036:tid 2036] [client 217.18.169.108:38908] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.realclean.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.realclean.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajhvFVT50FqqAd8Swz04ggAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 20:08:53
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 16:08:47.764856 2026] [security2:error] [pid 9074:tid 9074] [client 217.18.169.108:57206] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||iplantotravel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "iplantotravel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajhEzyjtDSorL8kSwpr-6QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 10:27:37
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 06:27:29.750539 2026] [security2:error] [pid 30436:tid 30436] [client 217.18.169.108:58684] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fundaciondamashcc.org.ec|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fundaciondamashcc.org.ec"] [uri "/wp-json/wp/v2/users"] [unique_id "aje8kWpXuhwX6rmTLZgUgQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-20 20:45:24
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
FeG Deutschland
2026-05-11 07:20:00
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
mnsf
2026-05-11 06:05:50
(1 month ago)
Too many Status 40X (12)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 04:17:12
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 00:17:08.004793 2026] [security2:error] [pid 8982:tid 8982] [client 217.18.169.108:41192] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||godcanuseyou.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "godcanuseyou.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agFYQwo4aenQeYDtsACSGgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2026-05-11 03:34:49
(1 month ago)
WordPress: User enumeration. Pattern match "(author\\\\= (1000-123)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 08:11:31
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 04:11:23.449598 2026] [security2:error] [pid 23824:tid 23824] [client 217.18.169.108:45428] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.magacine.tv|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.magacine.tv"] [uri "/wp-json/wp/v2/users"] [unique_id "agA9q59oEv57Uu3OwzmoaQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 01:34:06
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 21:33:59.411267 2026] [security2:error] [pid 10243:tid 10243] [client 217.18.169.108:37824] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mayiasteadman.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mayiasteadman.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af_ghzPkjwer5ljLvLR_dgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 22:19:10
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 18:19:04.561055 2026] [security2:error] [pid 27529:tid 27529] [client 217.18.169.108:41764] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bundrenfarmstn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bundrenfarmstn.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af-y2OAddndFn5vPMmBo2wAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 21:46:51
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): ...
show more
(mod_security) mod_security (id:225170) triggered by 217.18.169.108 (plesk108.red169.trevenque.es): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 17:46:44.953571 2026] [security2:error] [pid 32680:tid 32680] [client 217.18.169.108:52734] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||local639.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "local639.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af-rRCNJZR0Tri-m6T83fQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack