π©πͺ
LRob.fr
2026-06-25 00:45:02
(1 day ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-21 15:53:03
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 11:52:58.778661 2026] [security2:error] [pid 28896:tid 28896] [client 2a02:c207:2297:9142::1:54556] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.btccasting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.btccasting.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajgI2gVfOiMO8DrqvtyU8wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob.fr
2026-06-21 15:30:02
(4 days ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
π³π±
Mangelot Hosting
2026-06-21 11:21:47
(4 days ago)
(wp_login_try) srv102 WP Login Attempt 2a02:c207:2297:9142::1 (DE/Germany/-): 10 in the last 3600 se ...
show more
(wp_login_try) srv102 WP Login Attempt 2a02:c207:2297:9142::1 (DE/Germany/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-21 04:53:21
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 00:53:14.586340 2026] [security2:error] [pid 23977:tid 23977] [client 2a02:c207:2297:9142::1:33674] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.d365geek.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.d365geek.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajduOhX-DafwZpiLrGF59QAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-17 08:53:09
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 04:53:04.108149 2026] [security2:error] [pid 11901:tid 12035] [client 2a02:c207:2297:9142::1:48352] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pref-realestate.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pref-realestate.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajJgcN4x4a2QFIOIAiSRXAAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-17 02:56:09
(1 week ago)
Attac
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-16 22:12:20
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 18:12:13.620403 2026] [security2:error] [pid 30809:tid 30839] [client 2a02:c207:2297:9142::1:49860] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pwihatah.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pwihatah.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajHKPepJtMLbQ4LTKcQXWAAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-16 18:12:53
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 14:12:46.435747 2026] [security2:error] [pid 4405:tid 4405] [client 2a02:c207:2297:9142::1:50438] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.splashstation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.splashstation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ajGSHlCJYffJv1E79qfVdQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-16 11:21:05
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 07:20:58.186658 2026] [security2:error] [pid 26974:tid 26974] [client 2a02:c207:2297:9142::1:48790] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.concentricsteel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.concentricsteel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajExmmCmF29nkXdYhlyhfAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 23:18:36
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 19:18:32.147856 2026] [security2:error] [pid 347:tid 347] [client 2a02:c207:2297:9142::1:59908] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jaragoodrich.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jaragoodrich.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajCISLH_akmo4d5v-6q5mgAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 11:47:18
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 07:47:12.473190 2026] [security2:error] [pid 8615:tid 8615] [client 2a02:c207:2297:9142::1:47104] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.justicehoward.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.justicehoward.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai_mQIoqpR6MrbbamTn57wAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-15 01:21:59
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:21:55.840518 2026] [security2:error] [pid 2641:tid 2641] [client 2a02:c207:2297:9142::1:34236] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||natickvillagerentals.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "natickvillagerentals.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai9Ts7UA4gM3FDZ2XGeQJgAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 23:46:43
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:46:40.446185 2026] [security2:error] [pid 29790:tid 29790] [client 2a02:c207:2297:9142::1:42024] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doublenaughtspycar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doublenaughtspycar.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai89YPgu68HFU9cb0YYFxQAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-14 09:12:33
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2297:9142::1 (vmi2979142.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 05:12:28.490248 2026] [security2:error] [pid 14247:tid 14247] [client 2a02:c207:2297:9142::1:54740] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cmcnow.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cmcnow.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ai5wfC7bfeLN2OLHgb2eqgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack