๐บ๐ธ
nationaleventpros.com
2026-06-14 23:25:48
(4 days ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
kosada.com
2026-06-11 18:15:27
(1 week ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-07 15:22:54
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 11:22:44.402755 2026] [security2:error] [pid 23043:tid 23043] [client 45.135.1.160:64123] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||intercotrading.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "intercotrading.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiWMxK3cwbqMP9TG1120MgAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-05-22 15:55:15
(3 weeks ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-18 00:10:25
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 20:10:19.345511 2026] [security2:error] [pid 9239:tid 9265] [client 45.135.1.160:62549] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eagletons.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eagletons.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agpY61_QYxkYStFJoj0cRAAAARc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2026-05-13 17:47:42
(1 month ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 10:24:26
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 06:24:20.585128 2026] [security2:error] [pid 32505:tid 32505] [client 45.135.1.160:54001] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||techlinks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "techlinks.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agGuVH8qBNPZLN7JxTX-FgAAABQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 20:20:05
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 16:19:54.989948 2026] [security2:error] [pid 1060:tid 1060] [client 45.135.1.160:37963] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||oxygenfarm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "oxygenfarm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "af-W6gIem6rH1BsutZaONAAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TRoden
2026-04-08 11:55:37
(2 months ago)
Geo Block Plugin: Escalation flag(s): rce_attempt
Hacking
๐ช๐ธ
Cognisant-Security
2026-04-08 08:47:00
(2 months ago)
Attempts to login WordPress with invalid admin credentials
Web App Attack
Hacking
๐ฉ๐ช
John Chrys.
2026-04-01 21:56:25
(2 months ago)
45.135.1.160 - - [02/Apr/2026:00:54:07 +0300] "POST /xmlrpc.php HTTP/1.1" 403 3448 "-" "curl/8.6.0"
...
show more
45.135.1.160 - - [02/Apr/2026:00:54:07 +0300] "POST /xmlrpc.php HTTP/1.1" 403 3448 "-" "curl/8.6.0"
45.135.1.160 - - [02/Apr/2026:00:54:08 +0300] "POST /xmlrpc.php HTTP/1.1" 403 3448 "-" "curl/7.88.1"
45.135.1.160 - - [02/Apr/2026:00:54:09 +0300] "POST /xmlrpc.php HTTP/1.1" 403 3448 "-" "curl/7.88.1"
45.135.1.160 - - [02/Apr/2026:00:54:09 +0300] "POST /xmlrpc.php HTTP/1.1" 403 3448 "-" "Wget/1.21.4"
45.135.1.160 - - [02/Apr/2026:00:54:10 +0300] "POST /xmlrpc.php HTTP/1.1" 403 3448 "-" "Wget/1.21.4"
45.135.1.160 - - [02/Apr/2026:00:54:11 +0300] "POST /xmlrpc.php HTTP/1.1" 403 3448 "-" "curl/8.6.0"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 00:56:55
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 45.135.1.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 20:56:48.184642 2026] [security2:error] [pid 29794:tid 29794] [client 45.135.1.160:34195] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mcgmcg.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mcgmcg.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acMy0A-cD57rE2bsCrLxNQAAABo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
fbarela
2025-10-12 01:00:13
(8 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force