๐จ๐ฆ
SSH-Admin
2026-06-06 04:34:02
(56 minutes ago)
Probing for Exploits on ns74
Exploited Host
Web App Attack
Anonymous
2026-06-05 16:00:02
(13 hours ago)
Web App Attack, Hacking
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-06-05 00:52:47
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 22:38:33
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 18:38:27.760425 2026] [security2:error] [pid 32742:tid 32742] [client 51.89.42.94:47936] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kulacenterky.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kulacenterky.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiH-YzGN3lpIdEXvPFw6tQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 11:50:54
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 07:50:48.825473 2026] [security2:error] [pid 28508:tid 28508] [client 51.89.42.94:57280] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||barecreationsaz.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "barecreationsaz.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiFmmMWmqH12FWG-6cBCBAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-03 08:48:28
(2 days ago)
51.89.42.94 - - [03/Jun/2026:10:48:15 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 404 437 "-" "Mozill ...
show more
51.89.42.94 - - [03/Jun/2026:10:48:15 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:81.0) Gecko/20100101 Firefox/81.0"
51.89.42.94 - - [03/Jun/2026:10:48:15 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 404 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:81.0) Gecko/20100101 Firefox/81.0"
51.89.42.94 - - [03/Jun/2026:10:48:15 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:76.0) Gecko/20100101 Firefox/76.0"
51.89.42.94 - - [03/Jun/2026:10:48:15 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 404 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:76.0) Gecko/20100101 Firefox/76.0"
51.89.42.94 - - [03/Jun/2026:10:48:16 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 404 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:92.0) Gecko/20100101 Firefox/92.0"
51.89.42.94 - - [03/Jun/2026:10:48:16 +0200] "GET /wp-json/wp/v2/users HTTP/1.1" 404 244 "-" "Mozilla/5.0 (Windows NT 10.0; Win64;
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 05:33:25
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 01:33:18.275562 2026] [security2:error] [pid 24584:tid 24584] [client 51.89.42.94:50846] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.velvetculture.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.velvetculture.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah-8nngWPfAxEZFp9vpXowAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 07:27:43
(3 days ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 03:27:35.726834 2026] [security2:error] [pid 25797:tid 25797] [client 51.89.42.94:37572] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.brianwhitty.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.brianwhitty.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah6F58UWo_Dp6CjvsXwrvgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 21:24:47
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 17:24:44.077031 2026] [security2:error] [pid 32747:tid 32747] [client 51.89.42.94:55608] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.feministvoice.blog|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.feministvoice.blog"] [uri "/wp-json/wp/v2/users"] [unique_id "ahoEHIF_yLsLNlx_u9K0OAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 00:31:07
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 20:31:01.572825 2026] [security2:error] [pid 14859:tid 14859] [client 51.89.42.94:38756] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.peterndudar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.peterndudar.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aheMxbuvNnvcYCZ85UBlSAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 00:09:22
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:09:17.771341 2026] [security2:error] [pid 26750:tid 26750] [client 51.89.42.94:43140] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.tenmenband.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.tenmenband.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahY2Ld1Rsp4Ls1AiDZoYrQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-26 08:20:37
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 04:20:33.487596 2026] [security2:error] [pid 27390:tid 27400] [client 51.89.42.94:53012] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.aclarityforensics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.aclarityforensics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahVX0YzpQPA1Xj7SZ9qd2wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 19:48:16
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 15:48:10.892535 2026] [security2:error] [pid 20410:tid 20410] [client 51.89.42.94:33860] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.drayvian.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.drayvian.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahSneqHg9SO_OeBwIgICoQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 02:53:36
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 22:53:32.703286 2026] [security2:error] [pid 6565:tid 6565] [client 51.89.42.94:38860] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.innovacionesnimba.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.innovacionesnimba.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahO5rBA6dG0g6oLkIVwPYQAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-24 07:49:28
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in t ...
show more
(mod_security) mod_security (id:225170) triggered by 51.89.42.94 (ns31151329.ip-51-89-42.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 03:49:23.666645 2026] [security2:error] [pid 29771:tid 29771] [client 51.89.42.94:43052] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.guitarwisdom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.guitarwisdom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahKtg6jm1XkLj3wX9p1RnwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack