π¨π
4server
2026-09-29 22:56:03
(7 hours ago)
[WedSep3000:55:57.4172442026][security2:error][pid1292025:tid1292204][client5.183.254.246:0]ModSecur ...
show more
[WedSep3000:55:57.4172442026][security2:error][pid1292025:tid1292204][client5.183.254.246:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"714\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"leonitraslochi.ch\"][uri\"/xmlrpc.php\"][unique_id\"arxB_YwShtJQeizFNkJzywAAAJQ\"]
show less
Hacking
Web App Attack
π©πͺ
big-cloud.nl
2026-09-27 04:59:33
(3 days ago)
Try to access /xmlrpc.php
Web App Attack
π©πͺ
big-cloud.nl
2026-09-07 21:28:03
(3 weeks ago)
Try to access /xmlrpc.php
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-28 00:30:18
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 20:30:04.315616 2026] [security2:error] [pid 316422:tid 316422] [client 5.183.254.246:11945] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||atame.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "atame.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amf4DDO6g1z0DB_Oc2Jq9QAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Skyrider
2026-07-15 03:03:09
(2 months ago)
Nginx: HTTP 4xx probe/scan attempts. Automated fail2ban report.
Bad Web Bot
Web App Attack
π«π·
Tilellit.PRO
2026-05-07 21:23:00
(4 months ago)
Fail2Ban banned 5.183.254.246 for security violations in jail wp-armour. Log: 2026/05/07 21:23:00 [e ...
show more
Fail2Ban banned 5.183.254.246 for security violations in jail wp-armour. Log: 2026/05/07 21:23:00 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 5.183.254.246 | Target: wplogin" , client: 5.183.254.246, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
π¨π
backslash
2026-05-01 00:06:02
(4 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
πΊπΈ
nationaleventpros.com
2026-03-31 08:57:26
(5 months ago)
WordPress login attempt
Brute-Force
π©πͺ
Packets-Decreaser.NET
2025-09-07 19:48:58
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
πΊπΈ
TPI-Abuse
2025-04-04 16:40:02
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 04 12:39:46.416324 2025] [security2:error] [pid 2484:tid 2484] [client 5.183.254.246:19383] [client 5.183.254.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||madisonjazzorchestra.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "madisonjazzorchestra.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_ALUi3BfeGoXrQy1zBG-AAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-04-02 20:03:01
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 02 16:02:48.003734 2025] [security2:error] [pid 5676:tid 5682] [client 5.183.254.246:45471] [client 5.183.254.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lawyerlouisiana.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lawyerlouisiana.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z-2X6DpXKrphRMoi8N9vXAAAAQM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-03-09 12:27:40
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 5.183.254.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 09 08:27:27.162080 2025] [security2:error] [pid 2323229:tid 2323229] [client 5.183.254.246:44469] [client 5.183.254.246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holdingfamily.com"] [uri "/.env"] [unique_id "Z82JL0gsMJ4Tf1jqziVVMQAAAA8"], referer: https://tasamm.com/about/ggg100.html
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2021-05-28 15:45:00
(5 years ago)
Credential Stuffing
Brute-Force
Anonymous
2021-05-28 15:45:00
(5 years ago)
Credential Stuffing
Brute-Force