🇳🇱
ipoac.nl
2026-09-09 11:52:01
(14 hours ago)
2026-09-09T13:51:59.694357+02:00 ipoac.nl wordpress(-)-: Authentication failure for-from 223.74.120. ...
show more
2026-09-09T13:51:59.694357+02:00 ipoac.nl wordpress(-)-: Authentication failure for-from 223.74.120.198
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 06:34:20
(20 hours ago)
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 02:34:11.961081 2026] [security2:error] [pid 10420:tid 10420] [client 223.74.120.198:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mail.southernbroadcast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mail.southernbroadcast.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqD940bqj2C7Oc5dfazyPAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 02:35:37
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 22:35:32.580759 2026] [security2:error] [pid 27824:tid 27824] [client 223.74.120.198:21627] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kiinlog.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kiinlog.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDF9G6rNso-5JUwhE7WIwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-08 23:47:15
(1 day ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-login.php | 2026-09-08 23:47 UTC
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 21:28:13
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 17:28:05.764571 2026] [security2:error] [pid 9290:tid 9290] [client 223.74.120.198:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||avaliantlife.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "avaliantlife.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqB95axyz4tYk00NP-a_PAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 18:07:26
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 14:07:22.197514 2026] [security2:error] [pid 30718:tid 30718] [client 223.74.120.198:40507] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||desertalfas.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "desertalfas.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBO2hbcef7IRvXK_VS32wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 09:15:59
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 223.74.120.198 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:15:51.266160 2026] [security2:error] [pid 10703:tid 10703] [client 223.74.120.198:18382] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||georgegourmet.visionremota.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "georgegourmet.visionremota.info"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_SR6mZCkLuRf4ZNfpiAAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
dtorrer
2026-09-07 08:27:17
(2 days ago)
Forged login request.
Brute-Force