🇺🇸
TPI-Abuse
2026-09-08 21:49:37
(20 minutes ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 17:49:31.894131 2026] [security2:error] [pid 11007:tid 11007] [client 93.164.134.125:58068] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||huntingforebears.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "huntingforebears.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqCC67OhcHwAHQOz2emRmwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:47:12
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:47:07.949120 2026] [security2:error] [pid 1894:tid 1894] [client 93.164.134.125:48480] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||indiahouseportland.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "indiahouseportland.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBmOz3Ma--I-ZrwRLsDUAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 18:23:50
(3 hours ago)
93.164.134.125 - - [08/Sep/2026:20:23:44 +0200] "GET /wp-login.php HTTP/2.0" 200 4321 "-" "Mozilla/5 ...
show more
93.164.134.125 - - [08/Sep/2026:20:23:44 +0200] "GET /wp-login.php HTTP/2.0" 200 4321 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 18:06:25
(4 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 14:06:19.081838 2026] [security2:error] [pid 27218:tid 27218] [client 93.164.134.125:51772] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lahamradio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lahamradio.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqBOm0-yL_dyiGfRCiBKDAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 15:08:32
(7 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 11:08:24.382811 2026] [security2:error] [pid 14506:tid 14506] [client 93.164.134.125:37672] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||flatchestedmama.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "flatchestedmama.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAk6DEtCo4vqNA3DO7P3AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 13:50:00
(8 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 09:49:56.280869 2026] [security2:error] [pid 20652:tid 20660] [client 93.164.134.125:46280] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||whitecrosslibrary.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "whitecrosslibrary.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAShCJrt-w5IaZiWyqljwAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
stinpriza
2026-09-08 12:48:39
(9 hours ago)
Web App Attack
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 12:34:20
(9 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 08:34:14.289823 2026] [security2:error] [pid 15012:tid 15012] [client 93.164.134.125:56742] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.solucionesmercadeodigital.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.solucionesmercadeodigital.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "aqAAxpjjP5jfVytiwNRrEQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
neckaralb-admin.de
2026-09-08 12:18:40
(9 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 11:26:57
(10 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 07:26:49.002060 2026] [security2:error] [pid 11386:tid 11386] [client 93.164.134.125:33186] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||websitesforauthors.design|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "websitesforauthors.design"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_w-Irh4NrIUPrQi27vjQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 11:11:01
(10 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 09:24:21
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 i ...
show more
(mod_security) mod_security (id:225170) triggered by 93.164.134.125 (93-164-134-125.ip.obe.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:24:16.076909 2026] [security2:error] [pid 801:tid 801] [client 93.164.134.125:46042] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||susanoneill.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "susanoneill.us"] [uri "/wp-json/wp/v2/users/me"] [unique_id "ap_UQLJX_5m3vLVzVy_7YQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Hazzard
2026-09-08 08:58:30
(13 hours ago)
(wordpress) Failed wordpress login from 93.164.134.125 (SE/Sweden/Stockholm County/Stockholm/93-164- ...
show more
(wordpress) Failed wordpress login from 93.164.134.125 (SE/Sweden/Stockholm County/Stockholm/93-164-134-125.ip.obe.net/[redacted]): (CF_ENABLE)
show less
Brute-Force
🇩🇪
FeG Deutschland
2026-09-08 08:56:11
(13 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
🇲🇹
Malta
2026-09-08 06:15:35
(15 hours ago)
93.164.134.125 - - [08/Sep/2026:08:15:35 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows ...
show more
93.164.134.125 - - [08/Sep/2026:08:15:35 +0200] "POST /wp-login.php HTTP/1.1" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36"
Brute-force password attempt
show less
Hacking
Web App Attack
Brute-Force