๐บ๐ธ
TPI-Abuse
2026-06-18 16:18:03
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 12:17:58.264047 2026] [security2:error] [pid 13655:tid 13655] [client 2402:1f00:8001:2bf:::54108] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.d-sinema.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.d-sinema.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajQaNvc5iKbwCUmWzXo1GQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-18 05:28:39
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 01:28:28.125608 2026] [security2:error] [pid 25536:tid 25536] [client 2402:1f00:8001:2bf:::39036] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.otraes.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.otraes.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajOB_HHuC2G0jiV-EOR__AAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-06-18 00:40:05
(2 days ago)
2026-06-18 02:35:18 WordPress login error from 2402:1f00:8001:2bf::: incorrect_password && 2026-06-1 ...
show more
2026-06-18 02:35:18 WordPress login error from 2402:1f00:8001:2bf::: incorrect_password && 2026-06-18 02:35:18 WordPress login error from 2402:1f00:8001:2bf::: incorrect_password && 2026-06-18 02:35:18 WordPress login error from 2402:1f00:8001:2bf::: incorrect_password && 133 more within 20 minutes
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-17 20:52:51
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 16:52:41.895116 2026] [security2:error] [pid 18400:tid 18424] [client 2402:1f00:8001:2bf:::46704] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.campingcosmetics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.campingcosmetics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajMJGal3wcpoHnrfWGPzXgAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 19:30:46
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 15:30:39.321744 2026] [security2:error] [pid 4405:tid 4405] [client 2402:1f00:8001:2bf:::40476] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.instalatoribucuresti.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.instalatoribucuresti.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajGkXwgedIr1wJxeIJIq8wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 11:44:15
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 07:44:08.861413 2026] [security2:error] [pid 13202:tid 13202] [client 2402:1f00:8001:2bf:::60318] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.comobarbershop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.comobarbershop.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajE3CKkOzeDD66zhJtVeJwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 23:56:02
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 19:55:56.184792 2026] [security2:error] [pid 16025:tid 16025] [client 2402:1f00:8001:2bf:::60916] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.spacebooger.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.spacebooger.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajCRDIq_5QwyCu0Hm56AvQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-06-15 22:29:50
(4 days ago)
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-06-15 18:25:03
(4 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 19:36:08
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2402:1f00:8001:2bf:: (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 15:35:59.204384 2026] [security2:error] [pid 26118:tid 26118] [client 2402:1f00:8001:2bf:::41226] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.n4fh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.n4fh.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiCCH5HDmApt0qDaxTzdDwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-04-07 17:57:02
(2 months ago)
(wordpress) Failed wordpress login from 2402:1f00:8001:2bf:: (SG/Singapore/-/Singapore/-/[redacted]) ...
show more
(wordpress) Failed wordpress login from 2402:1f00:8001:2bf:: (SG/Singapore/-/Singapore/-/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐ฎ๐น
warp
2025-09-22 19:42:08
(8 months ago)
Repeated brute-force login attempts on WordPress (wp-login.php / xmlrpc.php). Reported by Jenka/Bott ...
show more
Repeated brute-force login attempts on WordPress (wp-login.php / xmlrpc.php). Reported by Jenka/Bottega del Vespro.
show less
Brute-Force
๐ซ๐ฎ
FlexPete
2025-08-03 23:59:59
(10 months ago)
Web related brute force 20250803
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
Max la Menace
2025-08-02 22:12:21
(10 months ago)
Wordpress Attack (P)
Web App Attack
๐ฉ๐ช
Ba-Yu
2025-08-02 21:53:36
(10 months ago)
WP-xmlrpc exploit
Web Spam
Blog Spam
Hacking
Exploited Host
Web App Attack