๐บ๐ธ
TPI-Abuse
2026-06-10 21:31:08
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 17:31:04.027294 2026] [security2:error] [pid 424:tid 424] [client 2a01:4f8:241:48da::2:51228] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nekstlevel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nekstlevel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ainXmMIGzYeDeBPrNbVSCgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
R.G.
2026-06-10 11:54:15
(14 hours ago)
(WPLOGINorWHATEVER) Get lost please 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 7 in the last 600 ...
show more
(WPLOGINorWHATEVER) Get lost please 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 7 in the last 600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 23:32:36
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 19:32:33.781418 2026] [security2:error] [pid 22318:tid 22318] [client 2a01:4f8:241:48da::2:39876] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||grabagame.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "grabagame.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aidREcROeXzF3MTlA26kxgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-08 17:56:25
(2 days ago)
(wp_login_try) srv101 WP Login Attempt 2a01:4f8:241:48da::2 (DE/Germany/-): 10 in the last 3600 secs ...
show more
(wp_login_try) srv101 WP Login Attempt 2a01:4f8:241:48da::2 (DE/Germany/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 08:32:33
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 04:32:25.276744 2026] [security2:error] [pid 2056:tid 2056] [client 2a01:4f8:241:48da::2:56208] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kmelson.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kmelson.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiZ-GaWtSZJr0hS7QLMptAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 21:59:35
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 17:59:28.760370 2026] [security2:error] [pid 6748:tid 6748] [client 2a01:4f8:241:48da::2:33258] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.mkdesignndetailing.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.mkdesignndetailing.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiXpwHdcv_Lw8eJwCRdTdwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 00:10:29
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 20:10:23.591360 2026] [security2:error] [pid 11363:tid 11363] [client 2a01:4f8:241:48da::2:48132] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.soundtrax.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.soundtrax.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aiS27ypPDb9815RQIvq_mwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 19:23:05
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 15:22:57.061079 2026] [security2:error] [pid 27415:tid 27440] [client 2a01:4f8:241:48da::2:56348] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cynosureinternetservices.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cynosureinternetservices.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiRzkanOvWe-3nCSVyrZdgAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 12:28:11
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 2a01:4f8:241:48da::2 (astra5113.nstdmail.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 08:28:05.495489 2026] [security2:error] [pid 4982:tid 4982] [client 2a01:4f8:241:48da::2:49232] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.soonerstone.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.soonerstone.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiLA1bDzrGr2AvPYfVHGLAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack