๐บ๐ธ
www.winos.me
2026-08-28 07:22:37
(4 hours ago)
Scanning for sensitive files/paths: /wp-login.php
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:33:29
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:33:22.330037 2026] [security2:error] [pid 9246:tid 9246] [client 2a02:4780:41:4d88::1:56050] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||josephshv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "josephshv.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apErslXyIcySIqWZNyT9qQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 05:43:09
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:42:58.533257 2026] [security2:error] [pid 20855:tid 20855] [client 2a02:4780:41:4d88::1:49522] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||67ronin.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "67ronin.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apEf4o7AvGnK_uAwHkQp_wAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 02:17:38
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:17:28.589017 2026] [security2:error] [pid 10380:tid 10380] [client 2a02:4780:41:4d88::1:56608] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rotentendales.aticom.es|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rotentendales.aticom.es"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDvuNieudN7XSMyAFzt9AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 01:41:13
(10 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 01:40:30
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 21:40:23.162506 2026] [security2:error] [pid 7568:tid 7568] [client 2a02:4780:41:4d88::1:60874] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||comicpreservation.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "comicpreservation.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDnB6v6xRGK5lSbTauwXAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 01:18:13
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 21:18:08.490209 2026] [security2:error] [pid 11751:tid 11751] [client 2a02:4780:41:4d88::1:52618] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doreenkimura.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doreenkimura.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDh0CTzkA6ZUM2l9ARcrAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 23:29:29
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:29:25.530680 2026] [security2:error] [pid 2822:tid 2822] [client 2a02:4780:41:4d88::1:53574] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kadinisi.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kadinisi.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apDIVdaRyYOBrl96ZlQZQAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-08-27 22:22:19
(13 hours ago)
(wordpress) Failed wordpress login from 2a02:4780:41:4d88::1 (DE/Germany/Hesse/Frankfurt am Main/srv ...
show more
(wordpress) Failed wordpress login from 2a02:4780:41:4d88::1 (DE/Germany/Hesse/Frankfurt am Main/srv1124426.hstgr.cloud/[redacted]): (CF_ENABLE)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-27 21:53:48
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 17:53:38.247956 2026] [security2:error] [pid 30264:tid 30285] [client 2a02:4780:41:4d88::1:52552] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||darrylrichards.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "darrylrichards.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apCx4ihiGJYuIb3qVAp3mQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 17:29:01
(18 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:28:54.603170 2026] [security2:error] [pid 1708:tid 1708] [client 2a02:4780:41:4d88::1:59794] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||bigislandhawaiirealestate.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "bigislandhawaiirealestate.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apBz1sjRQFyYN6NT0IU8fQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:48:28
(18 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:48:19.553055 2026] [security2:error] [pid 22830:tid 22830] [client 2a02:4780:41:4d88::1:59428] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ashleycroft.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ashleycroft.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apBqU5cAkqfcb8SVNP8z3gAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:19:37
(19 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:19:33.571034 2026] [security2:error] [pid 10498:tid 10498] [client 2a02:4780:41:4d88::1:55088] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||415test.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "415test.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apBjlQlEb8XriDEF539OswAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 15:46:49
(19 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:46:44.068729 2026] [security2:error] [pid 17590:tid 17590] [client 2a02:4780:41:4d88::1:60614] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.webseographics.smogsandiego.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.webseographics.smogsandiego.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apBb5J8Sz1x6F8vrRhuR8gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 14:00:28
(21 hours ago)
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:4780:41:4d88::1 (srv1124426.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:00:22.265412 2026] [security2:error] [pid 21282:tid 21282] [client 2a02:4780:41:4d88::1:39316] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lambert-heating-and-air.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lambert-heating-and-air.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apBC9vTlZci8P4IPo9cgQgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack