🇺🇸
TPI-Abuse
2026-09-08 16:14:33
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 12:14:30.062290 2026] [security2:error] [pid 11146:tid 11146] [client 58.82.243.99:54372] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doublenaughtspycar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doublenaughtspycar.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqA0Zni1SkoYo3UJnHh-PAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 15:10:37
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 11:10:32.784858 2026] [security2:error] [pid 1338:tid 1352] [client 58.82.243.99:59988] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.eldesvandemaggie.com.emehache.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.eldesvandemaggie.com.emehache.net"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAlaH9dEOHe-hXfEihjAgAAAUs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-09-08 15:08:56
(8 hours ago)
cloudlinux2 fail2ban: 2026-09-08 17:04:06,160 fail2ban.filter [1794]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-08 17:04:06,160 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 176.61.107.79 - 2026-09-08 17:04:05cloudlinux2 fail2ban: 2026-09-08 17:04:31,173 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 172.245.102.12 - 2026-09-08 17:04:29cloudlinux2 fail2ban: 2026-09-08 17:05:05,214 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 58.82.243.99 - 2026-09-08 17:05:05cloudlinux2 fail2ban: 2026-09-08 17:05:21,273 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 172.98.33.72 - 2026-09-08 17:05:20cloudlinux2 fail2ban: 2026-09-08 17:05:21,123 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 172.98.33.116 - 2026-09-08 17:05:20cloudlinux2 fail2ban: 2026-09-08 17:05:29,573 fail2ban.actions [1794]: NOTICE [plesk-modsecurity] Unban 136.67.183.3cloudlinux2 fail2ban: 2026-09-08 17:05:45,185 fail2ban.filter [1794]: INFO [plesk-wordpress] Found 45.92.229.170 - 2026-09-08 17:05:44cloudlinux2 fail2ban: 2026-09
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 12:53:31
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 08:53:27.172049 2026] [security2:error] [pid 21706:tid 21706] [client 58.82.243.99:35574] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||japanesejapan.info.smogsandiego.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "japanesejapan.info.smogsandiego.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAFR2KZYtMt8QMvcjWvnwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
ELYAZ
2026-09-08 11:42:17
(11 hours ago)
(wordpress) Failed wordpress login from 58.82.243.99 (HK/Hong Kong/-): (CF_ENABLE)
Brute-Force
🇦🇹
hxsain
2026-09-08 11:24:41
(11 hours ago)
Blocked by UFW on fr2 [23/tcp] | SPT: 45698 | TTL: 38 | LEN: 60 | TOS: 0x00 • Reported by: github.co ...
show more
Blocked by UFW on fr2 [23/tcp] | SPT: 45698 | TTL: 38 | LEN: 60 | TOS: 0x00 • Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
IoT Targeted
🇺🇸
TPI-Abuse
2026-09-08 11:03:31
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 07:03:25.642865 2026] [security2:error] [pid 24916:tid 24916] [client 58.82.243.99:37698] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||thefrontporchoffering.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "thefrontporchoffering.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_rfYLOne1krrhf-BM98wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 10:08:59
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 06:08:51.069701 2026] [security2:error] [pid 9497:tid 9497] [client 58.82.243.99:39734] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nolaanime.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nolaanime.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_esxkAuklHgC3epIq0lgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 09:23:57
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 58.82.243.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:23:50.279358 2026] [security2:error] [pid 16197:tid 16197] [client 58.82.243.99:54476] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||spacebooger.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "spacebooger.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_UJovNG_cAkK4sGYBYqQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack