๐ณ๐ฑ
Mangelot Hosting
2026-06-16 09:38:13
(1 week ago)
(wp_login_try) srv101 WP Login Attempt 2a00:6800:301:0:3214::1 (DE/Germany/-): 10 in the last 3600 s ...
show more
(wp_login_try) srv101 WP Login Attempt 2a00:6800:301:0:3214::1 (DE/Germany/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 08:59:32
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 04:59:26.691043 2026] [security2:error] [pid 20676:tid 20685] [client 2a00:6800:301:0:3214::1:37730] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.campingcosmetics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.campingcosmetics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajEQbuXBswEkfbEYKVDoGgAAAMY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 07:39:30
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 03:39:24.682838 2026] [security2:error] [pid 27950:tid 27950] [client 2a00:6800:301:0:3214::1:42132] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.earthtwoworkshop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.earthtwoworkshop.com"] [uri "/wp/wp-json/wp/v2/users"] [unique_id "ajD9rCYrEsgUaQYVB9Y_AAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-15 23:37:55
(1 week ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 21:21:10
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 17:21:02.858043 2026] [security2:error] [pid 32616:tid 32616] [client 2a00:6800:301:0:3214::1:38988] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||market1st.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "market1st.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajBsvn1xV7KfZKH4m7n_aAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 16:57:37
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 12:57:30.265531 2026] [security2:error] [pid 14999:tid 15019] [client 2a00:6800:301:0:3214::1:56272] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.abusaimeh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.abusaimeh.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajAu-psxgEJ_VaBoa8sXmwAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 16:20:56
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 12:20:50.573732 2026] [security2:error] [pid 6604:tid 6604] [client 2a00:6800:301:0:3214::1:58260] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||solarfarms.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "solarfarms.info"] [uri "/wp-json/wp/v2/users"] [unique_id "ajAmYmeJJMCWaYZwCAkYkQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-06-15 06:15:04
(1 week ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:42:34
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:42:26.776230 2026] [security2:error] [pid 16913:tid 16913] [client 2a00:6800:301:0:3214::1:42820] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.thingstodonude.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.thingstodonude.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai8uUl56E2SiDZx1YHZ3gwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 19:15:06
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 15:14:59.283607 2026] [security2:error] [pid 4596:tid 4596] [client 2a00:6800:301:0:3214::1:42168] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.convtek.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.convtek.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai2sM_ZYoWAJo_P84cETOwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-06-13 08:35:19
(1 week ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 23:26:10
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 19:26:00.728220 2026] [security2:error] [pid 14421:tid 14421] [client 2a00:6800:301:0:3214::1:55762] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||brbcash.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "brbcash.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aitECIFShajsK_ACBF-Y6AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 18:49:48
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 14:49:42.677212 2026] [security2:error] [pid 17557:tid 17557] [client 2a00:6800:301:0:3214::1:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.upskirtcrazy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.upskirtcrazy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aisDRuh4N5BUEQ6GAMzlyQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 15:39:08
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 11:38:59.815951 2026] [security2:error] [pid 29859:tid 29859] [client 2a00:6800:301:0:3214::1:56836] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theyoungstrategist.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theyoungstrategist.com"] [uri "/wp-json/wp/v2/users"] [unique_id "airWk8K6BKMn2nLPf0rnSQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 11:55:02
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the las ...
show more
(mod_security) mod_security (id:225170) triggered by 2a00:6800:301:0:3214::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 07:54:54.819781 2026] [security2:error] [pid 32620:tid 32620] [client 2a00:6800:301:0:3214::1:46098] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rwabutazafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rwabutazafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aiqiDnNZ6sNP6Lj2fSAEXwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack