๐บ๐ธ
TPI-Abuse
2026-08-31 11:21:50
(58 minutes ago)
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:21:45.703381 2026] [security2:error] [pid 7317:tid 7317] [client 219.94.248.179:52030] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||justicehoward.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "justicehoward.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apVjydCW13QToyFTWmngaQAAAAU"], referer: http://justicehoward.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-08-31 10:48:42
(1 hour ago)
Web vulnerability probing: /wp-login.php
Web App Attack
๐บ๐ธ
etu brutus
2026-08-31 09:43:11
(2 hours ago)
219.94.248.179 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ช๐ธ
alferez
2026-08-31 09:33:24
(2 hours ago)
Multiple WP Login Attack
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 09:31:07
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 05:31:00.211459 2026] [security2:error] [pid 30550:tid 30550] [client 219.94.248.179:59090] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lawrencehale.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lawrencehale.net"] [uri "/wp-json/wp/v2/users"] [unique_id "apVJ1L4dsjLJ-zRvWRCV9gAAAA8"], referer: http://lawrencehale.net/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:31:43
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:31:38.065795 2026] [security2:error] [pid 17144:tid 17144] [client 219.94.248.179:60330] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||monogay.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "monogay.org"] [uri "/wp-json/wp/v2/users"] [unique_id "apU76pZKkPkw_anKJfXNqwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-08-31 07:33:42
(4 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐ณ๐ฑ
MyGlobalFlowers
2026-08-31 07:28:17
(4 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 06:54:33
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:54:29.055015 2026] [security2:error] [pid 7720:tid 7720] [client 219.94.248.179:46326] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mjkhan.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mjkhan.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apUlJSg2AmQfvKF26_g0gQAAAAc"], referer: http://mjkhan.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-31 04:21:41
(7 hours ago)
Wordpress malicious attack:[octaflood]
Web App Attack
Anonymous
2026-08-31 03:28:29
(8 hours ago)
Failed Wordpress Logins
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 02:42:37
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 219.94.248.179 (www5165ue.sakura.ne.jp): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 22:42:31.362494 2026] [security2:error] [pid 1026:tid 1026] [client 219.94.248.179:48472] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||firebelly.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "firebelly.org"] [uri "/wp-json/wp/v2/users"] [unique_id "apTqFwAHIJtKvpxS5Q-eKwAAAAo"], referer: http://www.firebelly.org/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-08-31 01:37:40
(10 hours ago)
Wordpress hacking attempt
Web App Attack
๐ฆ๐น
joe-abuse
2026-08-31 01:33:57
(10 hours ago)
Automated report from fail2ban on www.fitzgerald.eu. Jail: apache-badpaths. First seen: 2026-08-31 0 ...
show more
Automated report from fail2ban on www.fitzgerald.eu. Jail: apache-badpaths. First seen: 2026-08-31 01:00:36. Events: 1. Reported by ipdb-security/fitzgerald.eu
show less
Web App Attack
Anonymous
2026-08-31 01:11:22
(11 hours ago)
PSCSERV WPSCAN 219.94.248.179
Bad Web Bot
Web App Attack