๐บ๐ธ
TPI-Abuse
2026-06-17 23:53:30
(20 hours ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 19:53:26.753746 2026] [security2:error] [pid 28416:tid 28416] [client 45.79.32.230:58522] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.doctoredwinalvarez.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.doctoredwinalvarez.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajMzdkxG_4WlDev_6QFhKAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-06-17 22:32:28
(21 hours ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 15:58:36
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 11:58:29.751688 2026] [security2:error] [pid 5149:tid 5149] [client 45.79.32.230:40206] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.avalderlaw.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.avalderlaw.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajLEJUNI4LURYRqpTUj0sgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Dolphi
2026-06-17 04:00:03
(1 day ago)
Excessive POST /xmlrpc.php requests
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 23:31:01
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 19:30:54.960889 2026] [security2:error] [pid 26068:tid 26068] [client 45.79.32.230:48936] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.splashstation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.splashstation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "ajHcrqM5rA2yHEhBQEMUhgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 23:35:07
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 19:35:00.599486 2026] [security2:error] [pid 29473:tid 29485] [client 45.79.32.230:51000] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.campingcosmetics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.campingcosmetics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajCMJAp0z2NxlnyKKLCNvQAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-06-15 19:45:09
(3 days ago)
2026-06-15 21:40:29 WordPress login error from 45.79.32.230: invalid_username && 2026-06-15 21:40:29 ...
show more
2026-06-15 21:40:29 WordPress login error from 45.79.32.230: invalid_username && 2026-06-15 21:40:29 WordPress login error from 45.79.32.230: incorrect_password && 2026-06-15 21:40:30 WordPress login error from 45.79.32.230: incorrect_password && 84 more within 20 minutes
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 14:51:12
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 10:51:09.188932 2026] [security2:error] [pid 14425:tid 14425] [client 45.79.32.230:57554] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.d-sinema.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.d-sinema.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajARXf6Y8GzCDZhpSh_t6gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 14:01:09
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 10:01:00.572540 2026] [security2:error] [pid 30279:tid 30279] [client 45.79.32.230:33538] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.lumentravel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.lumentravel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajAFnIEUDDfBeLAyC26-6AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 11:12:58
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 07:12:52.806781 2026] [security2:error] [pid 20197:tid 20197] [client 45.79.32.230:50216] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.havenlaneministries.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.havenlaneministries.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai6MtDghl1a2WQzZVbNGAwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 10:52:56
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 06:52:49.183987 2026] [security2:error] [pid 30613:tid 30613] [client 45.79.32.230:44016] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.fundingangelinvestors.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.fundingangelinvestors.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai6IAXYDA7x8IwAqelMBVwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
R.G.
2026-05-20 13:21:38
(4 weeks ago)
(XMLRPCorWHATEVER) Get lost please 45.79.32.230 (US/United States/ip-45-79-32-230.cloudezapp.io): 3 ...
show more
(XMLRPCorWHATEVER) Get lost please 45.79.32.230 (US/United States/ip-45-79-32-230.cloudezapp.io): 3 in the last 900 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Anonymous
2026-05-20 11:20:23
(4 weeks ago)
[redacted] 45.79.32.230 - - [20/May/2026:13:20:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mo ...
show more
[redacted] 45.79.32.230 - - [20/May/2026:13:20:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:100.0) Gecko/20100101 Firefox/100.0"
[redacted] 45.79.32.230 - - [20/May/2026:13:20:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:87.0) Gecko/20100101 Firefox/87.0"
[redacted] 45.79.32.230 - - [20/May/2026:13:20:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:66.0) Gecko/20100101 Firefox/66.0"
[redacted] 45.79.32.230 - - [20/May/2026:13:20:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:61.0) Gecko/20100101 Firefox/61.0"
[redacted] 45.79.32.230 - - [20/May/2026:13:20:20 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:62.0) Gecko/20100101 Firefox/62.0"
apollonia-bar
...
show less
Hacking
Web App Attack
๐ฉ๐ช
Viveronese
2026-05-20 07:40:46
(4 weeks ago)
Wordpress vulnerability scanning
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-19 04:26:07
(4 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 45.79.32.230 (ip-45-79-32-230.cloudezapp.io): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 19 00:26:00.393635 2026] [security2:error] [pid 8300:tid 8303] [client 45.79.32.230:46094] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.dwcmachining.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.dwcmachining.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agvmWHqHVU40_q4ScNTnswAAAsE"]
show less
Brute-Force
Bad Web Bot
Web App Attack