๐บ๐ธ
TPI-Abuse
2025-08-08 00:02:21
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 07 20:02:13.349713 2025] [security2:error] [pid 18819:tid 18819] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:60460] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.evolute.io|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.evolute.io"] [uri "/wp-json/wp/v2/users"] [unique_id "aJU-hVVWCn7IWz7_GV3MggAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
stinpriza
2025-08-07 11:24:39
(10 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-04 04:23:03
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 04 00:22:57.974431 2025] [security2:error] [pid 10995:tid 10995] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:53060] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pleaseaddbacon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pleaseaddbacon.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aJA1oRiGf5kgHGJOiDwvpQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-04 03:49:31
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 03 23:49:27.957697 2025] [security2:error] [pid 28153:tid 28153] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:49234] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.kerrywood.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.kerrywood.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aJAtx5PJJoj9o_SQI6VzfQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-04 03:21:49
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 03 23:21:45.986835 2025] [security2:error] [pid 14872:tid 14872] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:58322] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.directcch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.directcch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aJAnSVyezxVAqTIct3HDdAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-04 02:22:32
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 03 22:22:24.004240 2025] [security2:error] [pid 15342:tid 15342] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:60522] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.baliaccommodationpadangpadang.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.baliaccommodationpadangpadang.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aJAZYHbam57RubLcOoRfwQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2025-08-03 21:11:42
(10 months ago)
WP-xmlrpc exploit
Web Spam
Blog Spam
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-30 19:30:00
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 30 15:29:50.535981 2025] [security2:error] [pid 10488:tid 10488] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:38246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||akistech.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "akistech.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aIpyrrt9CdXoRLHoAnng5gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-23 01:57:55
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 22 21:57:47.918069 2025] [security2:error] [pid 29626:tid 29626] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:52432] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fletcherdouglas.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fletcherdouglas.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aIBBm9WYXtCoc59rnFETjgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-22 23:14:08
(11 months ago)
Failed Wordpress Logins
Web App Attack
๐ฎ๐น
VHosting
2025-07-22 19:55:01
(11 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2025-07-22 17:14:34
(11 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-06-10 15:33:15
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver ...
show more
(mod_security) mod_security (id:225170) triggered by 2a0b:7280:200:0:4d0:b4ff:fe00:dbd (ipv6-vserver34.axc.nl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 10 11:33:07.945520 2025] [security2:error] [pid 26705:tid 26705] [client 2a0b:7280:200:0:4d0:b4ff:fe00:dbd:39266] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||imperialmintnft.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "imperialmintnft.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aEhQMxA_ZFjWECPB9f9D9wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Olha Letucha
2022-04-13 04:16:19
(4 years ago)
dsfvf
DDoS Attack
๐ฉ๐ช
billaids
2021-01-04 10:32:06
(5 years ago)
2a0b:7280:200:0:4d0:b4ff:fe00:dbd - - [04/Jan/2021:16:31:58 +0100] "POST /xmlrpc.php HTTP/1.1" 200 4 ...
show more
2a0b:7280:200:0:4d0:b4ff:fe00:dbd - - [04/Jan/2021:16:31:58 +0100] "POST /xmlrpc.php HTTP/1.1" 200 418 "-" "Mozilla/5.0 (Linux; Android 8.1.0; BBB100-1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.111 Mobile Safari/537.36 wp-android/16.3"
show less
Bad Web Bot
Exploited Host
Web App Attack