๐บ๐ธ
TPI-Abuse
2026-08-23 02:18:20
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 22:18:13.913692 2026] [security2:error] [pid 27061:tid 27061] [client 62.238.122.232:23404] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||whiterapperz.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "whiterapperz.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aopYZeS5lZWPi2warR-xcAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 16:09:23
(18 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: FI, Attack patterns: Auto ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: FI, Attack patterns: Automated scanning
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-22 14:27:35
(20 hours ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 14:16:05
(20 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:16:00.939664 2026] [security2:error] [pid 12715:tid 12715] [client 62.238.122.232:44456] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||automatebi.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "automatebi.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aomvIMTl4YOxuNrcjk1mdwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 13:47:04
(20 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 09:46:59.021665 2026] [security2:error] [pid 24532:tid 24532] [client 62.238.122.232:62034] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mariarozella.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mariarozella.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aomoU2U6Qr6UL1PpSaOdHgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 11:46:53
(22 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:46:45.938248 2026] [security2:error] [pid 18664:tid 18664] [client 62.238.122.232:37408] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||learnserve.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "learnserve.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aomMJTg3NOGyMJKkQeOwEwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 11:35:24
(23 hours ago)
Web application attack detected.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 11:14:41
(23 hours ago)
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 07:14:36.559970 2026] [security2:error] [pid 31451:tid 31510] [client 62.238.122.232:52462] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pilargarciamanzanares.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pilargarciamanzanares.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aomEnPJR4DrIX7ajLU8tNQAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-22 09:54:35
(1 day ago)
Connection flood: far more simultaneous connections than any client needs, dropped by the server
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 09:36:08
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 62.238.122.232 (static.232.122.238.62.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 05:36:04.124322 2026] [security2:error] [pid 30046:tid 30046] [client 62.238.122.232:16722] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rwabutazafoundation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rwabutazafoundation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aolthGPluyD1UAGQhcJG4wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-22 09:29:25
(1 day ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238.62.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 62.238.122.232 - - [22/Aug/2026:11:29:24 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 18797 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=confartigianato.pe.it
show less
Port Scan
๐ฆ๐บ
screwlooseit.com.au
2026-08-22 08:59:24
(1 day ago)
Blocked by CSF 13 firewall - Rule: NL/Netherlands/static.232.122.238.62.clients.your-server.de
Web App Attack
๐ฉ๐ช
maxpower
2026-08-22 08:34:07
(1 day ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238.62.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 62.238.122.232 - - [22/Aug/2026:10:34:02 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 18797 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=confartigianato.pe.it
show less
Port Scan
๐ฉ๐ช
maxpower
2026-08-22 07:46:51
(1 day ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238.62.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 62.238.122.232 - - [22/Aug/2026:09:46:50 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 18797 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=confartigianato.pe.it
show less
Port Scan
๐ฉ๐ช
maxpower
2026-08-22 05:51:19
(1 day ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 62.238.122.232 (FI/Finland/static.232.122.238.62.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 62.238.122.232 - - [22/Aug/2026:07:51:15 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 18797 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=confartigianato.pe.it
show less
Port Scan