๐บ๐ธ
TPI-Abuse
2026-06-29 12:16:13
(13 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 08:16:05.759786 2026] [security2:error] [pid 4415:tid 4415] [client 62.193.192.126:49088] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mytapt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mytapt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akJiBQly_TXwheTtXEXnEQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-29 09:30:08
(15 hours ago)
2026-06-29T11:30:05.955437+02:00 aion wordpress[2526168]: Blocked user enumeration attempt from 62.1 ...
show more
2026-06-29T11:30:05.955437+02:00 aion wordpress[2526168]: Blocked user enumeration attempt from 62.193.192.126
...
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-29 07:47:46
(17 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 03:47:41.504156 2026] [security2:error] [pid 20524:tid 20527] [client 62.193.192.126:41188] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sandiegosamsolo.com.workconfident.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sandiegosamsolo.com.workconfident.com"] [uri "/wp-json/wp/v2/users/5"] [unique_id "akIjHX7VmCcm2FMLPi6l8QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 06:26:17
(18 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 02:26:10.060532 2026] [security2:error] [pid 2600:tid 2600] [client 62.193.192.126:40500] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chickiesbeef.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chickiesbeef.com"] [uri "/wp-json/wp/v2/users/2"] [unique_id "akIQAiBv3_b81LyjT6E9DAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 05:40:31
(19 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 01:40:23.584105 2026] [security2:error] [pid 1971:tid 1971] [client 62.193.192.126:50688] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sneedvillefarmersmarket.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sneedvillefarmersmarket.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akIFRxs5uC-Q6yiruk00nAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 04:23:22
(20 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 00:23:15.487180 2026] [security2:error] [pid 13967:tid 13967] [client 62.193.192.126:43052] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||museum.henning.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "museum.henning.org"] [uri "/wp-json/wp/v2/users/8"] [unique_id "akHzM3Aug0pV79tqNHrJwQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 03:56:14
(21 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 23:56:08.992391 2026] [security2:error] [pid 25017:tid 25017] [client 62.193.192.126:60834] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cajunpicasso.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cajunpicasso.com"] [uri "/wp-json/wp/v2/users/5"] [unique_id "akHs2HtF-G61MVFIAwx3pAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-06-29 03:43:22
(21 hours ago)
62.193.192.126 - - [29/Jun/2026:05:43:19 +0200] "GET /xmlrpc.php HTTP/2.0" 403 453 "-" "Mozilla/5.0 ...
show more
62.193.192.126 - - [29/Jun/2026:05:43:19 +0200] "GET /xmlrpc.php HTTP/2.0" 403 453 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 03:13:39
(22 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 23:13:34.574357 2026] [security2:error] [pid 4936:tid 4936] [client 62.193.192.126:59002] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pharmaceuticalsalescareerhub.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pharmaceuticalsalescareerhub.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "akHi3pmDyjXTsYdGIFws8AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 01:25:38
(23 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 21:25:33.211337 2026] [security2:error] [pid 6734:tid 6734] [client 62.193.192.126:56234] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||visionremota.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "visionremota.info"] [uri "/wp-json/wp/v2/users"] [unique_id "akHJjYHbwUc084xSnbepNgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 00:27:32
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 20:27:26.593052 2026] [security2:error] [pid 17821:tid 17821] [client 62.193.192.126:40842] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||londongroup.info|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "londongroup.info"] [uri "/wp-json/wp/v2/users/7"] [unique_id "akG77n2xdp0q2dJCRSMoZwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-29 00:20:03
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 2
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 23:24:39
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 19:24:35.553317 2026] [security2:error] [pid 23410:tid 23410] [client 62.193.192.126:54274] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||takemehomedogrescue.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "takemehomedogrescue.org"] [uri "/wp-json/wp/v2/users"] [unique_id "akGtM9H1HF4RpjbFD1zkNwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-28 21:21:36
(1 day ago)
Known malicious PHP file or CMS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 19:49:37
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the l ...
show more
(mod_security) mod_security (id:225170) triggered by 62.193.192.126 (cp227.webserver.pt): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 15:49:32.916656 2026] [security2:error] [pid 19130:tid 19130] [client 62.193.192.126:51298] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||talentstar2025.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "talentstar2025.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akF6zF-mswTV-npENTxY_gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack