๐จ๐ฆ
zXero
2026-07-21 12:19:44
(10 hours ago)
Fail2Ban automatic report - jail: no-wordpress
Brute-Force
SSH
DDoS Attack
๐ฉ๐ช
Bedios GmbH
2026-07-20 12:39:01
(1 day ago)
Wordpress hacking attempt
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 12:05:36
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 223.185.60.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.185.60.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 08:05:28.802563 2026] [security2:error] [pid 6929:tid 6929] [client 223.185.60.231:30730] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||appalachianfieldstofamilies.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "appalachianfieldstofamilies.org"] [uri "/wp-json/wp/v2/users"] [unique_id "al4PCFnRiz6ptb-ZpunZnwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
Olexiy Backend
2026-07-19 10:37:45
(2 days ago)
223.185.60.231
...
Bad Web Bot
Web App Attack
Anonymous
2026-07-19 10:35:03
(2 days ago)
Bot / scanning and/or hacking attempts: GET / HTTP/1.1, POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ฉ๐ช
4server
2026-07-19 09:39:52
(2 days ago)
[SunJul1911:39:47.0645252026][security2:error][pid392557:tid392571][client223.185.60.231:0]ModSecuri ...
show more
[SunJul1911:39:47.0645252026][security2:error][pid392557:tid392571][client223.185.60.231:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"b4consulting.ch\"][uri\"/xmlrpc.php\"][unique_id\"alybY5gtFehV0R2_RiDKcwAAAEo\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-18 19:56:17
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 223.185.60.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.185.60.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 15:56:11.471373 2026] [security2:error] [pid 8156:tid 8156] [client 223.185.60.231:29493] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||odinathletes.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "odinathletes.com"] [uri "/wp-json/wp/v2/users"] [unique_id "alvaWzQc-6OYRx8GcoQtXwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
zXero
2026-07-18 19:35:51
(3 days ago)
Fail2Ban automatic report - jail: no-wordpress
Brute-Force
SSH
DDoS Attack
๐ฉ๐ช
big-cloud.nl
2026-07-18 18:04:07
(3 days ago)
Try to access /xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-18 17:30:39
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 223.185.60.231 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.185.60.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 13:30:31.979974 2026] [security2:error] [pid 21343:tid 21343] [client 223.185.60.231:11770] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||marinestorage.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "marinestorage.com"] [uri "/wp-json/wp/v2/users"] [unique_id "alu4N3DpNktXnNnhrSelmgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
Global Cyber Police
2025-07-28 10:24:56
(11 months ago)
Malicious bot activity detected: Hitting honeypot page. Part of massive botnet.
DDoS Attack
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Web App Attack