๐บ๐ธ
TPI-Abuse
2026-06-16 05:25:54
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 01:25:47.535803 2026] [security2:error] [pid 27967:tid 27967] [client 37.44.16.231:33882] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sharawi-gum.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sharawi-gum.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajDeW_SfZgRB3HiOtq6WkAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 22:30:15
(11 hours ago)
[server.tmg.gr] httpd-suspicious-path: sites=aidshep2018.gr; logs=/var/log/httpd/domains/aidshep2018 ...
show more
[server.tmg.gr] httpd-suspicious-path: sites=aidshep2018.gr; logs=/var/log/httpd/domains/aidshep2018.gr.log; samples=/wp-json/wp/v2/users | /?author=1 | /?author=2
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 18:10:15
(15 hours ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 14:10:09.288801 2026] [security2:error] [pid 9767:tid 9767] [client 37.44.16.231:38568] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.intothebigempty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.intothebigempty.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajBAAUf5NIaq7pGuecQaxwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 14:40:53
(19 hours ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 10:40:49.346753 2026] [security2:error] [pid 5314:tid 5330] [client 37.44.16.231:53768] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pwihatah.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pwihatah.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajAO8WtE2BWEaagZvy0dcQAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 13:16:06
(20 hours ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 09:16:01.919842 2026] [security2:error] [pid 17554:tid 17554] [client 37.44.16.231:42678] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.boaredraven.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.boaredraven.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai_7Ec0OH43qIAQYydnTxQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 10:35:10
(23 hours ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 07:32:21
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:32:14.866786 2026] [security2:error] [pid 14696:tid 14696] [client 37.44.16.231:38362] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.sutherlandyogastudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.sutherlandyogastudio.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai-qfuRFiOlPzvveEoZYMwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:39:06
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:38:58.910641 2026] [security2:error] [pid 28749:tid 28749] [client 37.44.16.231:57144] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.genevainvestors.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.genevainvestors.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai9XsoS7qX0uYPrrLR07oQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 18:58:22
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 14:58:18.535710 2026] [security2:error] [pid 11699:tid 11699] [client 37.44.16.231:54638] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tcomputerguy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tcomputerguy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiHKyo8zURGO9dAkWO5TfwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 15:51:16
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:51:12.309856 2026] [security2:error] [pid 18168:tid 18168] [client 37.44.16.231:37328] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jesussotoca.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jesussotoca.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah778HeYmcWAMkN-xMJdkgAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 03:07:51
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 23:07:44.922239 2026] [security2:error] [pid 4008:tid 4008] [client 37.44.16.231:36468] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||newmooncafe.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "newmooncafe.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah5JADAG_EIOLYnoQXTO-AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 18:49:19
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 14:49:12.300607 2026] [security2:error] [pid 12421:tid 12421] [client 37.44.16.231:48302] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fishleadership.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fishleadership.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ah3UKK8rMMlIAzTolBLmiwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 03:41:03
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 23:40:56.470424 2026] [security2:error] [pid 7664:tid 7664] [client 37.44.16.231:50412] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.speedysremodeling.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.speedysremodeling.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahz_SOEKgISL4YHs0aFNwQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-31 22:56:02
(2 weeks ago)
Bot / scanning and/or hacking attempts: GET / HTTP/1.1, GET /?author=1 HTTP/1.1, GET /author/admin/ ...
show more
Bot / scanning and/or hacking attempts: GET / HTTP/1.1, GET /?author=1 HTTP/1.1, GET /author/admin/ HTTP/1.1, POST /xmlrpc.php HTTP/1.1, POST /wp-login.php HTTP/1.1, GET /wp-json/wp/v2/users HTTP/1.1, GET /?author=3 HTTP/1.1, GET /?author=2 HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 08:29:11
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 sec ...
show more
(mod_security) mod_security (id:225170) triggered by 37.44.16.231 (d.zrns.cz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 04:29:04.128876 2026] [security2:error] [pid 3490:tid 3490] [client 37.44.16.231:45744] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.peterndudar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.peterndudar.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahvxUChDeAs4x3vBARPh6gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack