๐ฉ๐ช
neckaralb-admin.de
2026-08-28 06:25:00
(3 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:17:28
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:17:23.091524 2026] [security2:error] [pid 20591:tid 20591] [client 2400:b800:8::35:60300] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ashleycroft.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ashleycroft.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apEn805oosu-v2oVC_jsDgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 05:55:04
(3 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 05:50:45
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:50:38.360108 2026] [security2:error] [pid 26000:tid 26000] [client 2400:b800:8::35:34678] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||repair.cloudex.link|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "repair.cloudex.link"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apEhrllgYQzTf6G6nwPO1QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-08-28 05:04:48
(4 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 04:27:08
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 00:27:02.779356 2026] [security2:error] [pid 7491:tid 7491] [client 2400:b800:8::35:54794] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||adona.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "adona.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apEOFmoI4JDdMVKCzPrK_gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 02:00:31
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:00:20.634198 2026] [security2:error] [pid 32109:tid 32109] [client 2400:b800:8::35:43170] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||broneksuchanek.com.arsenaultartistmanagement.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "broneksuchanek.com.arsenaultartistmanagement.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDrtO3iUUYcoJGzvgxUIQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
F242
2026-08-28 01:59:02
(7 hours ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 01:10:27
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 21:10:22.631755 2026] [security2:error] [pid 26758:tid 26758] [client 2400:b800:8::35:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cloudex.click|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cloudex.click"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDf_lG4-ZgA5-t2sOTOkAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 23:58:25
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:58:18.491378 2026] [security2:error] [pid 8606:tid 8606] [client 2400:b800:8::35:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||avaliantlife.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "avaliantlife.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDPGlzUetse440n6qN4JQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-27 23:25:03
(10 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 22:25:57
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:25:53.723832 2026] [security2:error] [pid 23208:tid 23208] [client 2400:b800:8::35:41458] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||smartradios.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "smartradios.info"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apC5cRWT8j3--zjCU9ykawAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 22:09:36
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:09:26.645314 2026] [security2:error] [pid 13766:tid 13766] [client 2400:b800:8::35:41286] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ramseycountycorruption.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ramseycountycorruption.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apC1lrJhTR74COIU6HKSMAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
www.winos.me
2026-08-27 20:47:06
(12 hours ago)
Scanning for sensitive files/paths: /wp-login.php
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 15:29:27
(17 hours ago)
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices. ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:b800:8::35 (syn03bd.syd6.hostyourservices.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:29:18.565975 2026] [security2:error] [pid 5811:tid 5811] [client 2400:b800:8::35:43692] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||feiz.church|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "feiz.church"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apBXzsZOFvkxq4LapVj7qwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack