๐บ๐ธ
TPI-Abuse
2026-06-15 09:41:00
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 05:40:54.259575 2026] [security2:error] [pid 5977:tid 5977] [client 2a02:c207:2325:6949::1:53200] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sharawi-gum.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sharawi-gum.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai_IprIC0kklBpuEN-xxXAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:15:16
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:15:08.757877 2026] [security2:error] [pid 11205:tid 11205] [client 2a02:c207:2325:6949::1:48280] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.bolivarbulletintimes.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.bolivarbulletintimes.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai-KXD6P2RV0G7VVYtBoKQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:30:27
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:30:19.649542 2026] [security2:error] [pid 26822:tid 26822] [client 2a02:c207:2325:6949::1:49938] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||learnserve.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "learnserve.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ai8re18BfP5y_DOwXtFU9AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 08:11:32
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 04:11:25.046589 2026] [security2:error] [pid 16562:tid 16562] [client 2a02:c207:2325:6949::1:39756] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.feiz.church|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.feiz.church"] [uri "/wp-json/wp/v2/users"] [unique_id "ai5iLdBiNekizSURDF3v2wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 07:49:13
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 03:49:06.013835 2026] [security2:error] [pid 5453:tid 5453] [client 2a02:c207:2325:6949::1:45770] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.aroilcontrolsystem.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.aroilcontrolsystem.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aikW8ldOkz5p26G0f17DpQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
R.G.
2026-06-08 20:23:12
(1 week ago)
(XMLRPCorWHATEVER) Get lost please 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 3 in the l ...
show more
(XMLRPCorWHATEVER) Get lost please 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 3 in the last 900 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 03:31:46
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 23:31:40.251922 2026] [security2:error] [pid 6792:tid 6823] [client 2a02:c207:2325:6949::1:43720] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jofdt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jofdt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiTmHFLAv4XPCas_rCWSZwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 23:44:26
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 19:44:21.587928 2026] [security2:error] [pid 24348:tid 24348] [client 2a02:c207:2325:6949::1:50016] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.thehealthyplaceclayton.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.thehealthyplaceclayton.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiSw1ZL_idcxDOH7bErRTAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 19:37:53
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 15:37:47.590479 2026] [security2:error] [pid 15460:tid 15460] [client 2a02:c207:2325:6949::1:46512] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jaragoodrich.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jaragoodrich.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiR3CxNbD3BaBWO9REpEQQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 10:53:33
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 05 06:53:29.720947 2026] [security2:error] [pid 22887:tid 22887] [client 2a02:c207:2325:6949::1:41412] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.lacycustombuilt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.lacycustombuilt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiKqqf60onw6cG7OAAFIzQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 20:22:58
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 16:22:50.546003 2026] [security2:error] [pid 18186:tid 18186] [client 2a02:c207:2325:6949::1:38586] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||oruhu.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "oruhu.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aiHems1BSubixptDqc4BpAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 11:49:51
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 07:49:45.459131 2026] [security2:error] [pid 26794:tid 26801] [client 2a02:c207:2325:6949::1:47298] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.guitarprimer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.guitarprimer.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiAU2aEXRAD2EvuozQuuSQAAAcM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 03:49:49
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 23:49:45.345743 2026] [security2:error] [pid 11942:tid 11942] [client 2a02:c207:2325:6949::1:42486] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||imbrasacademic.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "imbrasacademic.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah-kWUQL_92gtcuJcLelMQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 10:57:39
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 06:57:32.672496 2026] [security2:error] [pid 15173:tid 15173] [client 2a02:c207:2325:6949::1:39814] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fetchamreadingroom.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fetchamreadingroom.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ah63HA2E83aeQKCwmSgZFAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 18:59:54
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserve ...
show more
(mod_security) mod_security (id:225170) triggered by 2a02:c207:2325:6949::1 (vmi3256949.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 14:59:50.845360 2026] [security2:error] [pid 12334:tid 12334] [client 2a02:c207:2325:6949::1:49284] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.eta-mct.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.eta-mct.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah3WpqtCm0KplicFGbH08AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack