🇺🇸
TPI-Abuse
2026-09-08 20:51:02
(26 minutes ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 16:50:58.326270 2026] [security2:error] [pid 4426:tid 4426] [client 58.153.0.23:58600] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doublenaughtspycar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doublenaughtspycar.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqB1MnAs5aPUHEOfI2mC7AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:58:54
(1 hour ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:58:49.739389 2026] [security2:error] [pid 24817:tid 24817] [client 58.153.0.23:33756] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||celebritybikinigossip.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "celebritybikinigossip.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBo-QFfzmmSg2AJCre2sQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 18:48:39
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 14:48:35.580648 2026] [security2:error] [pid 4667:tid 4667] [client 58.153.0.23:39538] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||infinityartistsgroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "infinityartistsgroup.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBYgw3DBNIg9ELFEIc8ogAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
DocNetzwerk
2026-09-08 18:40:18
(2 hours ago)
(wordpress) Failed wordpress login from 58.153.0.23 (HK/Hong Kong/n058153000023.netvigator.com)
Brute-Force
🇩🇪
FeG Deutschland
2026-09-08 17:10:53
(4 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
Anonymous
2026-09-08 17:05:02
(4 hours ago)
Bot / scanning and/or hacking attempts: POST /wp-login.php HTTP/2.0, [2/2] done, GET /wp-login.php H ...
show more
Bot / scanning and/or hacking attempts: POST /wp-login.php HTTP/2.0, [2/2] done, GET /wp-login.php HTTP/2.0
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 15:56:48
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 11:56:38.771316 2026] [security2:error] [pid 2087:tid 2087] [client 58.153.0.23:35874] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||diegogamazo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "diegogamazo.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAwNkxigJiQgDkiz8cxlQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
QT
2026-09-08 15:09:27
(6 hours ago)
Unauthorised WordPress admin login attempted at 2026-09-09 01:09:20 +1000
Web App Attack
🇩🇪
Hazzard
2026-09-08 14:44:40
(6 hours ago)
(wordpress) Failed wordpress login from 58.153.0.23 (HK/Hong Kong/-/-/n058153000023.netvigator.com/[ ...
show more
(wordpress) Failed wordpress login from 58.153.0.23 (HK/Hong Kong/-/-/n058153000023.netvigator.com/[redacted]): (CF_ENABLE)
show less
Brute-Force
🇺🇸
TPI-Abuse
2026-09-08 13:34:32
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 09:34:25.014958 2026] [security2:error] [pid 30154:tid 30177] [client 58.153.0.23:34598] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eliteproductions.tv|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eliteproductions.tv"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAO4WmV0R0Xx3X-lwc3-QAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 12:05:24
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 08:05:19.819592 2026] [security2:error] [pid 26756:tid 26756] [client 58.153.0.23:32840] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kbalan.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kbalan.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_5_7BgbBy8BbD4Zu7I9AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 11:25:21
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 07:25:14.954708 2026] [security2:error] [pid 30628:tid 30628] [client 58.153.0.23:59848] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||edgecomix.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "edgecomix.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_wmv8USpYvM8G0_76cuQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 09:33:16
(11 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 58.153.0.23 (n058153000023.netvigator.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:33:09.099807 2026] [security2:error] [pid 4188:tid 4198] [client 58.153.0.23:52296] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dbestcarting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dbestcarting.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_WVUNPDzJjZjCNRadgigAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
neckaralb-admin.de
2026-09-08 09:21:19
(11 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇩🇪
LRob
2026-09-08 03:20:54
(17 hours ago)
WordPress login brute-force | path: /wp-login.php | 2026-09-08 03:20 UTC
Brute-Force
Web App Attack