๐ฉ๐ช
filstal.org
2026-08-21 19:11:24
(2 hours ago)
Web exploit or injection attempt blocked by ModSecurity WAF.
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 19:06:06
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 15:05:58.485961 2026] [security2:error] [pid 3020:tid 3020] [client 95.216.168.126:24086] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wokedreamer.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wokedreamer.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoihloqllL0Ph5neApuGzwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 18:21:29
(2 hours ago)
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:21:24.548019 2026] [security2:error] [pid 11157:tid 11165] [client 95.216.168.126:19804] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||smarterproductions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "smarterproductions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoiXJE0AMihHP63mIQFmRgAAAgU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-21 18:16:01
(3 hours ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 95.216.168.126 (FI/Finland/static.126.168.216. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 95.216.168.126 (FI/Finland/static.126.168.216.95.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 95.216.168.126 - - [21/Aug/2026:20:15:58 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 7845 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=mediaqualitylab.it
show less
Port Scan
Anonymous
2026-08-21 18:10:18
(3 hours ago)
Web application attack detected.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 17:57:07
(3 hours ago)
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 13:57:00.548050 2026] [security2:error] [pid 27501:tid 27501] [client 95.216.168.126:54264] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jresm.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jresm.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aoiRbNw9XEaMsR6U45eZPAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-21 17:20:02
(3 hours ago)
Malicious activity detected
Hacking
Web App Attack
๐ฉ๐ช
maxpower
2026-08-21 17:12:00
(4 hours ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 95.216.168.126 (FI/Finland/static.126.168.216. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 95.216.168.126 (FI/Finland/static.126.168.216.95.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 95.216.168.126 - - [21/Aug/2026:19:11:55 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 7845 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=mediaqualitylab.it
show less
Port Scan
๐ฎ๐น
VHosting
2026-08-21 16:05:05
(5 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 15:53:37
(5 hours ago)
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 11:53:31.431306 2026] [security2:error] [pid 1236:tid 1236] [client 95.216.168.126:34024] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||blythewoodanimalhospital.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "blythewoodanimalhospital.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoh0e8zHRmHQzXP9H9Dn0QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
strzonnek
2026-08-21 15:30:51
(5 hours ago)
attack on webform
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 15:10:13
(6 hours ago)
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.168.126 (static.126.168.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 11:10:04.886725 2026] [security2:error] [pid 28872:tid 28872] [client 95.216.168.126:28546] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||splashstation.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "splashstation.org"] [uri "/wp-json/wp/v2/users"] [unique_id "aohqTMCH46zwT_Db9MAQnwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack