๐ณ๐ฑ
Site.eu
2026-06-14 18:20:14
(2 months ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-13 18:38:50
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 14:38:43.737706 2026] [security2:error] [pid 11027:tid 11027] [client 2a01:4f8:1c19:83fc::1:43368] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.vrevgaming.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.vrevgaming.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ai2js6SDVk9aWqGzDRmgWQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 07:31:23
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 03:31:17.801602 2026] [security2:error] [pid 13986:tid 13986] [client 2a01:4f8:1c19:83fc::1:47684] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tonydelov.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tonydelov.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai0HRbMEBBKXLpoY3Y50VQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 19:01:31
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 15:01:24.479759 2026] [security2:error] [pid 26968:tid 26982] [client 2a01:4f8:1c19:83fc::1:57068] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||victorchiarizia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "victorchiarizia.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aixXhL_VQI-V5Q2_up80jAAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-12 07:36:05
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 03:35:58.904832 2026] [security2:error] [pid 31794:tid 31794] [client 2a01:4f8:1c19:83fc::1:42874] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cmcnow.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cmcnow.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aiu23oND2Zq-cHX5RjbDmgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
KnightIndustries
2026-06-10 23:42:48
(2 months ago)
2026-06-11T01:42:47.806507+02:00 milkyway wordpress(learncryptography.pw)[3277677]: Authentication a ...
show more
2026-06-11T01:42:47.806507+02:00 milkyway wordpress(learncryptography.pw)[3277677]: Authentication attempt for unknown user user from 2a01:4f8:1c19:83fc::1
2026-06-11T01:42:48.033575+02:00 milkyway wordpress(learncryptography.pw)[3277286]: Authentication attempt for unknown user user from 2a01:4f8:1c19:83fc::1
2026-06-11T01:42:48.228268+02:00 milkyway wordpress(learncryptography.pw)[3277285]: Authentication attempt for unknown user richkiller from 2a01:4f8:1c19:83fc::1
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 03:43:39
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 23:43:33.095170 2026] [security2:error] [pid 11315:tid 11315] [client 2a01:4f8:1c19:83fc::1:35138] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rwabutazafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rwabutazafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aijdZbOrD3X9Evfza5yCRgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-09 22:12:34
(2 months ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Site.eu
2026-06-06 02:51:01
(2 months ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-05 03:17:07
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 23:17:01.753348 2026] [security2:error] [pid 14149:tid 14149] [client 2a01:4f8:1c19:83fc::1:51718] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.lockdownclaim.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.lockdownclaim.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiI_rWMJuIpZ_SKESlEblgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-04 08:46:01
(2 months ago)
Try to access /xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 21:27:52
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 17:27:49.580477 2026] [security2:error] [pid 28159:tid 28159] [client 2a01:4f8:1c19:83fc::1:57088] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.americanureport.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.americanureport.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiCcVbiaDRqMm32q2d9XrwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-03 11:27:05
(2 months ago)
(wp_login_try) srv104 WP Login Attempt 2a01:4f8:1c19:83fc::1 (DE/Germany/-): 10 in the last 3600 sec ...
show more
(wp_login_try) srv104 WP Login Attempt 2a01:4f8:1c19:83fc::1 (DE/Germany/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 02:28:38
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 22:28:31.477967 2026] [security2:error] [pid 26803:tid 26803] [client 2a01:4f8:1c19:83fc::1:47300] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kmelson.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kmelson.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah-RT-ZIeJ7cP29KfiPPiAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 02:57:04
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:1c19:83fc::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 22:57:00.997168 2026] [security2:error] [pid 30452:tid 30452] [client 2a01:4f8:1c19:83fc::1:57714] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||webuychesterfieldhouses.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "webuychesterfieldhouses.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah5GfGDe_EhAZUIPpc0r1wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack