๐บ๐ธ
TPI-Abuse
2026-09-16 11:48:21
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 07:48:15.323718 2026] [security2:error] [pid 3047:tid 3047] [client 34.138.90.123:62695] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wokedreamer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wokedreamer.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aqqB_-l1KaEeXg6uHn_lCgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-09-16 11:44:28
(3 days ago)
tried to access forbidden files; attempted to access /wp-includes/wlwmanifest.xml
Web App Attack
๐ฆ๐บ
Klaverstyn
2026-09-16 11:41:26
(3 days ago)
Excessive HTTP request rate
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-09-16 11:32:52
(3 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 11:31:20
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 07:31:16.844651 2026] [security2:error] [pid 1745:tid 1745] [client 34.138.90.123:63986] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.wholesalelivelobsters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.wholesalelivelobsters.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aqp-BOabnzFk-gJxVZoS3AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
Origon
2026-09-16 11:15:23
(3 days ago)
http-probing - IP: 34.138.90.123 - time="2026-09-16T13:15:23+02:00" level=info msg="(555f66b4f6a745 ...
show more
http-probing - IP: 34.138.90.123 - time="2026-09-16T13:15:23+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 34.138.90.123 (US/396982) : 4h ban on Ip 34.138.90.123" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 11:14:57
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 07:14:51.909473 2026] [security2:error] [pid 18424:tid 18424] [client 34.138.90.123:58441] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.webersource.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.webersource.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aqp6K63X5d1uER31vXs9aAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-09-16 10:58:52
(3 days ago)
(wordpress) Failed wordpress login from 34.138.90.123 (US/United States/South Carolina/North Charles ...
show more
(wordpress) Failed wordpress login from 34.138.90.123 (US/United States/South Carolina/North Charleston/123.90.138.34.bc.googleusercontent.com)
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 10:47:18
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 06:47:12.705120 2026] [security2:error] [pid 24088:tid 24152] [client 34.138.90.123:49865] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||victorchiarizia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "victorchiarizia.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aqpzsKSfgqxa9aEufbg6lwAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
venar
2026-09-16 10:42:51
(3 days ago)
PrestaShop Security Module: WordPress probe path detected
Web App Attack
๐ฎ๐น
VHosting
2026-09-16 10:40:03
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2026-09-16 10:33:00
(3 days ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-16 10:28:11
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:225170) triggered by 34.138.90.123 (123.90.138.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 06:28:05.471594 2026] [security2:error] [pid 10345:tid 10345] [client 34.138.90.123:49473] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ubuciko.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ubuciko.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aqpvNSxTQH_cKjfZIiSiXwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-09-16 10:26:25
(3 days ago)
CMS/framework probe: 34.138.90.123 - - [16/Sep/2026:12:26:24 +0200] "GET //wp-includes/wlwmanifest.x ...
show more
CMS/framework probe: 34.138.90.123 - - [16/Sep/2026:12:26:24 +0200] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 1499 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/89.0.4389.114 Safari/537.36" asn=396982 org="Google LLC" country=US
...
show less
Web App Attack
๐ช๐ธ
Yoeph
2026-09-16 10:25:48
(3 days ago)
Malicious probe on /xmlrpc.php (Permanently Banned) by TurnoControlPro Web Shield
Hacking
Bad Web Bot
Web App Attack