🇺🇸
TPI-Abuse
2026-09-07 15:27:53
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 11:27:48.206231 2026] [security2:error] [pid 4328:tid 4328] [client 2606:2040:140:1db::2:52175] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jdsqrd.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jdsqrd.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap7X9Hjhsj-Bt--DztKTDQAAAA0"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 14:06:36
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 10:06:28.141001 2026] [security2:error] [pid 21969:tid 22030] [client 2606:2040:140:1db::2:52901] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.east-lease.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.east-lease.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap7E5HTx6omXApDQ8Os9vgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 13:33:26
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 09:33:19.058915 2026] [security2:error] [pid 3386:tid 3386] [client 2606:2040:140:1db::2:55140] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fixmyland.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fixmyland.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap69HwCSxXMg1KJx4C_n8wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 13:14:51
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 09:14:46.138291 2026] [security2:error] [pid 31651:tid 31651] [client 2606:2040:140:1db::2:56880] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||creationorevolution.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "creationorevolution.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ap64xnyDSRcMFnCnVUGcdQAAAA8"], referer: https://duckduckgo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 12:35:35
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 08:35:30.816726 2026] [security2:error] [pid 13295:tid 13295] [client 2606:2040:140:1db::2:63266] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.exhaustthelimits.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.exhaustthelimits.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ap6vkiR7Ky9ebT8UaEbJ7gAAAAY"], referer: https://www.bing.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 11:50:59
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 07:50:53.257174 2026] [security2:error] [pid 9110:tid 9110] [client 2606:2040:140:1db::2:65398] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.247.fishing|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.247.fishing"] [uri "/wp-json/wp/v2/users"] [unique_id "ap6lHeztNLg9ygc7PiOGFAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 11:19:53
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 07:19:47.120306 2026] [security2:error] [pid 25991:tid 25991] [client 2606:2040:140:1db::2:57849] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nihlabs.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nihlabs.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ap6d0-37kaL5phhAZP1A-wAAAAo"], referer: https://duckduckgo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 10:35:43
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 06:35:39.476782 2026] [security2:error] [pid 25951:tid 25951] [client 2606:2040:140:1db::2:57979] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.natickvillagerentals.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.natickvillagerentals.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap6Te_M-lcNjGnSasKmYqgAAABI"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 10:11:22
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 06:11:14.258516 2026] [security2:error] [pid 8391:tid 8391] [client 2606:2040:140:1db::2:52903] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bearssd.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bearssd.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ap6NwnydOjQD7uHPlKTE7QAAAAQ"], referer: https://t.co/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
YF
2026-09-07 09:30:21
(12 hours ago)
wp-login.php Brute force
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:00:50
(14 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:00:43.884490 2026] [security2:error] [pid 1775944:tid 1775948] [client 2606:2040:140:1db::2:64284] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gryphix.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gryphix.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap5vK-U9S6JaZtNkXKpc1wAAAAI"], referer: https://t.co/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:20:52
(14 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:20:46.103194 2026] [security2:error] [pid 8595:tid 8595] [client 2606:2040:140:1db::2:59831] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||prostar.industries|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "prostar.industries"] [uri "/wp-json/wp/v2/users"] [unique_id "ap5lztlFtvku1q3k8IvrlwAAAAA"], referer: https://www.google.com/search?q=wordpress
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 06:52:26
(15 hours ago)
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 2606:2040:140:1db::2 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 02:52:22.894500 2026] [security2:error] [pid 11038:tid 11038] [client 2606:2040:140:1db::2:57809] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kawkacevents.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kawkacevents.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap5fJowIgAZayd9pMGB2swAAAAE"], referer: https://www.bing.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
tr1n
2026-09-04 15:45:02
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | ASN: 49791 (Newserver ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: MANAGED_CHALLENGE | ASN: 49791 (Newserverlife LLC) | Protocol: HTTP/1.1 (GET) | Endpoint: / | Timestamp: 2026-09-04T15:45:02Z | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36
show less
Bad Web Bot
🇺🇸
Alvino
2026-09-04 12:04:22
(3 days ago)
Blocked due to using a VPN or data center IP with abuse: 3
Web Spam
VPN IP