πΊπΈ
octageeks.com
2025-11-06 05:06:13
(7 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-05 04:56:29
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 04 23:56:25.371933 2025] [security2:error] [pid 30247:tid 30247] [client 50.62.137.45:55392] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.holistichealth4u2.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.holistichealth4u2.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aQrY-XkbG2u4XZnF1Kz1SAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-04 19:25:41
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 04 14:25:36.295606 2025] [security2:error] [pid 10178:tid 10178] [client 50.62.137.45:37702] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.freemanfoundationcle.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.freemanfoundationcle.org"] [uri "/wp-json/wp/V2/users"] [unique_id "aQpTMALNF5jiGsjbCIk1OAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-04 11:17:44
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 04 06:17:37.309165 2025] [security2:error] [pid 2858:tid 2858] [client 50.62.137.45:34012] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cosplayculture.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cosplayculture.com"] [uri "/Wp-JsOn/Wp/V2/UsErS"] [unique_id "aQng0VfcDNuAUjJVdkgkrwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-03 16:58:31
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 11:58:27.770628 2025] [security2:error] [pid 22415:tid 22415] [client 50.62.137.45:53534] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.math1on1.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.math1on1.net"] [uri "/wp-json/wp/v2/usErs"] [unique_id "aQjfM4mX4Nw1sSZDPqdPgAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-03 09:00:22
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 50.62.137.45 (45.137.62.50.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 03 04:00:09.427884 2025] [security2:error] [pid 9513:tid 9513] [client 50.62.137.45:37660] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.gilgoinn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.gilgoinn.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aQhvGXGukxckG0O2U_-FSQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
octageeks.com
2025-11-03 05:08:32
(7 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
π«π·
tecnicorioja
2025-11-02 23:02:58
(7 months ago)
POST /xmlrpc.php [02/Nov/2025:09:19:55
Brute-Force
Web App Attack
π«π·
ingroscart.it
2025-11-02 14:24:38
(7 months ago)
(wordpress) Failed wordpress login from 50.62.137.45 (US/United States/45.137.62.50.host.secureserve ...
show more
(wordpress) Failed wordpress login from 50.62.137.45 (US/United States/45.137.62.50.host.secureserver.net)
show less
Brute-Force
π©πͺ
Hazzard
2025-07-11 08:07:15
(11 months ago)
(wordpress) Failed wordpress login from 50.62.137.45 (US/United States/-/-/45.137.62.50.host.secures ...
show more
(wordpress) Failed wordpress login from 50.62.137.45 (US/United States/-/-/45.137.62.50.host.secureserver.net/[redacted])
show less
Brute-Force
πΊπΈ
octageeks.com
2025-07-09 04:13:26
(11 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
Anonymous
2025-07-08 19:05:21
(11 months ago)
XMLRPC Hack Attempts
Hacking
Brute-Force
πΊπΈ
octageeks.com
2025-07-06 04:23:38
(11 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
π©πͺ
LRob.fr
2025-06-25 14:00:20
(1 year ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
π¬π§
Swiptly
2025-06-21 06:41:48
(1 year ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack