🇧🇪
taivas.nl
2026-09-08 09:32:16
(1 day ago)
Wordpress_login_attempts
Bad Web Bot
🇩🇪
dbmwebdesign
2026-09-08 07:05:14
(1 day ago)
Repeated attacks detected by Fail2Ban in recidive jail
Hacking
🇩🇪
neckaralb-admin.de
2026-09-08 04:45:25
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 02:31:04
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 22:30:58.790009 2026] [security2:error] [pid 14231:tid 14231] [client 38.107.236.73:60534] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||abilityimprinting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "abilityimprinting.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap9zYvkCzg_anbvSM7OpIQAAAAc"], referer: https://wordpress.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 01:13:04
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 21:12:56.968094 2026] [security2:error] [pid 13847:tid 13847] [client 38.107.236.73:54965] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.exhaustthelimits.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.exhaustthelimits.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ap9hGM9KdxSrAPjz7V3hqQAAAAM"], referer: https://www.bing.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-08 00:50:31
(1 day ago)
3.633 POST requests with url.path */wp-login.php
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 23:53:51
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:53:44.207123 2026] [security2:error] [pid 484:tid 484] [client 38.107.236.73:61841] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jazziiafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jazziiafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ap9OiEuGj7TxLs7Xcrbd-AAAAAk"], referer: https://duckduckgo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-07 21:14:05
(1 day ago)
10 attempts against mh-misc-ban on bud
Web App Attack
🇳🇱
Savvii
2026-09-07 20:58:54
(1 day ago)
10 attempts against mh_ha-misc-ban on bud
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 20:42:07
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:42:01.967209 2026] [security2:error] [pid 22083:tid 22083] [client 38.107.236.73:62352] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.takeapawsboston.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.takeapawsboston.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap8hmTfQiVwLZpODTnFvxQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:52:43
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:52:38.407698 2026] [security2:error] [pid 11157:tid 11181] [client 38.107.236.73:52239] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.davidholls.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.davidholls.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap8WBtyDOGqWseLJ9jDZ6QAAAIU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:23:58
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:23:53.939619 2026] [security2:error] [pid 20172:tid 20172] [client 38.107.236.73:62902] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||konahawaiirealty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "konahawaiirealty.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap8PSVxezgBHLjrW2r_b0wAAAC0"], referer: https://duckduckgo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 16:56:39
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 12:56:35.024874 2026] [security2:error] [pid 31177:tid 31177] [client 38.107.236.73:58195] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.idmadventures.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.idmadventures.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap7sw2WDbvHNochiw-S_twAAAAM"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 16:06:38
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 12:06:33.049452 2026] [security2:error] [pid 2520:tid 2520] [client 38.107.236.73:56381] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blacksheepoffroad.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blacksheepoffroad.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap7hCVvI0HCz3RlvdUbobwAAABc"], referer: https://www.google.com/search?q=wordpress
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 15:48:27
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 38.107.236.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 11:48:21.883668 2026] [security2:error] [pid 27549:tid 27549] [client 38.107.236.73:60267] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.josephshv.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.josephshv.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ap7cxaR1iqjVDHqgxIlWGQAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack