๐บ๐ธ
TPI-Abuse
2025-08-20 03:43:24
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 19 23:43:19.344256 2025] [security2:error] [pid 4016:tid 4016] [client 92.205.15.27:49618] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.applemaccomputerconsulting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.applemaccomputerconsulting.com"] [uri "/wp-json/wp/v2/users/16"] [unique_id "aKVEV5kYbvfINejVqhYPFgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-17 16:48:28
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 17 12:48:24.282156 2025] [security2:error] [pid 4241:tid 4241] [client 92.205.15.27:19500] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.nationalenq.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.nationalenq.com"] [uri "/wp-json/wp/v2/users/6"] [unique_id "aKIH2HDDZ2X5Ku5auM_CwwAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2025-08-16 19:05:17
(9 months ago)
Login Too Frequent (7)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-15 23:02:27
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 15 19:02:23.155529 2025] [security2:error] [pid 25422:tid 25430] [client 92.205.15.27:35708] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.dwcmachining.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.dwcmachining.com"] [uri "/wp-json/wp/v2/users/7"] [unique_id "aJ-8f4ZK4mVNMrGXEMqGmgAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2025-08-15 04:06:30
(9 months ago)
Wordpress malicious attack:[octaxmlrpc]
Web App Attack
๐ง๐ช
taivas.nl
2025-08-15 02:32:15
(9 months ago)
Wordpress_xmlrpc_attack
Bad Web Bot
Anonymous
2025-08-15 00:02:56
(9 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-08-14 10:53:11
(9 months ago)
Malicious activity detected
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-08-14 08:18:45
(9 months ago)
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.ne ...
show more
(mod_security) mod_security (id:225170) triggered by 92.205.15.27 (27.15.205.92.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 14 04:18:40.692725 2025] [security2:error] [pid 2080:tid 2080] [client 92.205.15.27:24380] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gerrytolentino.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gerrytolentino.net"] [uri "/wp-json/wp/v2/users/6"] [unique_id "aJ2b4D774RFycpAhydAqrgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-08-14 02:33:24
(9 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 24
Exploited Host
Web App Attack
๐ฆ๐บ
MAGIC
2025-08-07 01:03:56
(10 months ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฉ๐ช
Hazzard
2025-08-04 05:14:01
(10 months ago)
(wordpress) Failed wordpress login from 92.205.15.27 (FR/France/Bas-Rhin/Strasbourg/27.15.205.92.hos ...
show more
(wordpress) Failed wordpress login from 92.205.15.27 (FR/France/Bas-Rhin/Strasbourg/27.15.205.92.host.secureserver.net/[redacted])
show less
Brute-Force
๐ฉ๐ช
neckaralb-admin.de
2025-08-02 07:31:09
(10 months ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2025-08-02 06:10:39
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-08-01 15:38:48
(10 months ago)
XMLRPC Hack Attempts
Hacking
Brute-Force