🇫🇷
ELYAZ
2026-09-09 06:59:13
(5 hours ago)
(wordpress) Failed wordpress login from 45.66.42.181 (GR/Greece/45.66.42.181.inalan.gr): (CF_ENABLE ...
show more
(wordpress) Failed wordpress login from 45.66.42.181 (GR/Greece/45.66.42.181.inalan.gr): (CF_ENABLE)
show less
Brute-Force
🇩🇪
4server
2026-09-09 06:49:48
(5 hours ago)
[WedSep0908:49:45.6714292026][security2:error][pid2673244:tid2673539][client45.66.42.181:0]ModSecuri ...
show more
[WedSep0908:49:45.6714292026][security2:error][pid2673244:tid2673539][client45.66.42.181:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"your-team.ch\"][uri\"/wp-login.php\"][unique_id\"aqEBiaeErI-JYReR9P83CgAAAIo\"]\,referer:https://your-team.ch/wp-login.php
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 06:01:14
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 02:01:07.667988 2026] [security2:error] [pid 30236:tid 30258] [client 45.66.42.181:58182] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||inal.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "inal.org"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqD2I3kLsvbSuZbIh_rsOwAAANI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 05:25:20
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 01:25:13.064500 2026] [security2:error] [pid 21194:tid 21194] [client 45.66.42.181:37148] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||luxandunion.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "luxandunion.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDtuZOmz5orFqPxue_64AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
A.i.D.A.N.N
2026-09-09 05:03:59
(7 hours ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 05:02:42
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 01:02:34.671478 2026] [security2:error] [pid 17301:tid 17301] [client 45.66.42.181:50246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||persnicketyinc.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "persnicketyinc.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDoaiJxX0M5iUfeBRtjWAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
nationaleventpros.com
2026-09-09 03:11:22
(9 hours ago)
WordPress login attempt
Brute-Force
🇺🇸
TPI-Abuse
2026-09-09 02:49:22
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 22:49:15.023330 2026] [security2:error] [pid 6122:tid 6122] [client 45.66.42.181:37026] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||elgar.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "elgar.us"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDJK_Xq8b490h5IFBvB3gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-09 02:31:55
(9 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-login.php | 2026-09-09 02:31 UTC
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 02:17:55
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 22:17:50.693876 2026] [security2:error] [pid 22012:tid 22012] [client 45.66.42.181:55208] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||texascottagebakers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "texascottagebakers.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqDBzveWEqo7rESrGhksqwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
neckaralb-admin.de
2026-09-09 02:01:57
(10 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 01:12:39
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 21:12:31.255411 2026] [security2:error] [pid 31191:tid 31191] [client 45.66.42.181:37354] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||websitesforauthors.design|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "websitesforauthors.design"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCyf5e_Ih8msKRiCx3cCgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 00:09:03
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 20:08:55.601026 2026] [security2:error] [pid 28468:tid 28468] [client 45.66.42.181:51906] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zoesaadeh.com.saadeh.ws|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zoesaadeh.com.saadeh.ws"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCjlyvBXBEOxANaET6zBAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 23:51:35
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 19:51:30.487602 2026] [security2:error] [pid 14222:tid 14222] [client 45.66.42.181:42154] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||reyadecostarica.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "reyadecostarica.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCfgjSWA25XY4keK0OJQQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 23:18:50
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.66.42.181 (45.66.42.181.inalan.gr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 19:18:46.414333 2026] [security2:error] [pid 19205:tid 19205] [client 45.66.42.181:44928] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||susanleeward.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "susanleeward.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCX1n6AVOscmUMPaJoj4gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack