๐ท๐ด
INTEQ
2026-06-25 00:23:24
(1 day ago)
Web attack from 93.189.24.53
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 16:02:00
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 12:01:53.402713 2026] [security2:error] [pid 29371:tid 29371] [client 93.189.24.53:32852] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.jesussotoca.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.jesussotoca.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajqt8Q7GCvo2GamUmi6JEwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
lns.bz
2026-06-23 12:02:53
(3 days ago)
Web app attack [PL.Lu]
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 09:48:45
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 05:48:37.126967 2026] [security2:error] [pid 12924:tid 12929] [client 93.189.24.53:39354] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.scottspencergfx.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.scottspencergfx.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajezdUYtKZtrVVk50NGkpgAAAYE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-19 21:26:10
(6 days ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-19 11:45:59
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 07:45:54.945846 2026] [security2:error] [pid 4338:tid 4338] [client 93.189.24.53:42898] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jaragoodrich.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jaragoodrich.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajUr8kiphD5VQz7xYTpcyAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-17 16:54:39
(1 week ago)
[redacted] 93.189.24.53 - - [17/Jun/2026:18:54:38 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mo ...
show more
[redacted] 93.189.24.53 - - [17/Jun/2026:18:54:38 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:52.0) Gecko/20100101 Firefox/52.0"
[redacted] 93.189.24.53 - - [17/Jun/2026:18:54:38 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:50.0) Gecko/20100101 Firefox/50.0"
[redacted] 93.189.24.53 - - [17/Jun/2026:18:54:38 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:80.0) Gecko/20100101 Firefox/80.0"
[redacted] 93.189.24.53 - - [17/Jun/2026:18:54:38 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:44.0) Gecko/20100101 Firefox/44.0"
[redacted] 93.189.24.53 - - [17/Jun/2026:18:54:38 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:86.0) Gecko/20100101 Firefox/86.0"
[redacted] 93.189.24.53 - - [17/Jun/2026:18:54:38 +0200]
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 16:19:50
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 12:19:44.738953 2026] [security2:error] [pid 18811:tid 18811] [client 93.189.24.53:50958] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||apuntesdeinversion.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "apuntesdeinversion.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajLJILHHK5kG4DrjMYQk_gAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-17 10:28:02
(1 week ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1, GET /?author=3 HTTP/1.1, GET / HT ...
show more
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1, GET /?author=3 HTTP/1.1, GET / HTTP/1.1, GET /?author=2 HTTP/1.1, GET /wp-json/wp/v2/users HTTP/1.1, GET /author/admin/ HTTP/1.1, POST /wp-login.php HTTP/1.1, GET /?author=1 HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 09:07:22
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 05:07:16.615260 2026] [security2:error] [pid 25247:tid 25247] [client 93.189.24.53:48230] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.kaylamaclaincounseling.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.kaylamaclaincounseling.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajJjxISoXYMNZPn6zk0zjAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 16:13:31
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 12:13:27.101915 2026] [security2:error] [pid 24831:tid 24851] [client 93.189.24.53:50634] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.abusaimeh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.abusaimeh.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajF2J6ogFGJ0V2A_kZdKGQAAANI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-12 12:37:27
(2 weeks ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-10 14:32:16
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 10:32:08.905648 2026] [security2:error] [pid 17894:tid 17894] [client 93.189.24.53:45548] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.sizefinder.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.sizefinder.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ail1aOydqJap99C0Q4m_vgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-06-10 11:40:07
(2 weeks ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 15:57:32
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 3 ...
show more
(mod_security) mod_security (id:225170) triggered by 93.189.24.53 (wh6.web.ipax.at): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 11:57:25.071531 2026] [security2:error] [pid 1908:tid 1943] [client 93.189.24.53:37338] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eliteproductions.tv|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eliteproductions.tv"] [uri "/wp-json/wp/v2/users"] [unique_id "ahxaZWZjDy1AEUYeA1zaHAAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack