Anonymous
2026-08-23 12:07:19
(22 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: FI, Attack patterns: Auto ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: FI, Attack patterns: Automated scanning
show less
Bad Web Bot
Web App Attack
Anonymous
2026-08-23 11:23:17
(23 hours ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 11:00:22
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 07:00:17.812084 2026] [security2:error] [pid 20950:tid 20974] [client 95.216.171.254:41916] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dbestcarting.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dbestcarting.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aorSwQkxFRrb7Y8gzXoUsAAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 10:24:29
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 06:24:24.930785 2026] [security2:error] [pid 31020:tid 31020] [client 95.216.171.254:60974] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||produktives.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "produktives.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aorKWDHK5Cnntv2C0d9rtAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-23 10:02:04
(1 day ago)
Web attack
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 09:50:29
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 05:50:23.198614 2026] [security2:error] [pid 23317:tid 23317] [client 95.216.171.254:16210] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hawarcenter.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hawarcenter.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aorCX8yjHT0Q4wxhVjVFWgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-23 04:15:11
(1 day ago)
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 95.216.171.254 (FI/Finland/static.254.171.216. ...
show more
(wp_fingerprint) REGOLA 6 - WP Exploit Attempt xmlrpc 95.216.171.254 (FI/Finland/static.254.171.216.95.clients.your-server.de): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 95.216.171.254 - - [23/Aug/2026:06:15:09 +0200] "GET /wp-json/wp/v2/users?per_page=100 HTTP/1.1" 200 750 "-" "Mozilla/5.0 (compatible; osentix-crawler/1.0; +https://osentix.com/bot)" "-" host=spazioitaliaarteinmovimento.it
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-23 01:10:05
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 21:09:59.246415 2026] [security2:error] [pid 17023:tid 17023] [client 95.216.171.254:15810] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sizefinder.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sizefinder.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aopIZ-7JV7jhe16uApinJAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 21:41:15
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 17:41:10.945582 2026] [security2:error] [pid 20223:tid 20223] [client 95.216.171.254:27054] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ritterlien.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ritterlien.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aooXdm99dTqACaz3HXifJgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-22 20:18:38
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐ซ๐ท
Sklurk
2026-08-22 20:09:11
(1 day ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 19:09:00
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 15:08:56.142916 2026] [security2:error] [pid 5936:tid 5936] [client 95.216.171.254:60128] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||motioncontrolpartners.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "motioncontrolpartners.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aonzyJwnpz-so0BWZpi-sQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 17:39:26
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 13:39:23.192047 2026] [security2:error] [pid 16473:tid 16473] [client 95.216.171.254:46194] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||guarinofurnituredesigns.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "guarinofurnituredesigns.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoneyzb2TJD1MZ6DjFUuCQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 17:16:48
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 13:16:43.699453 2026] [security2:error] [pid 2756:tid 2756] [client 95.216.171.254:58840] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cityoffoley.gov|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cityoffoley.gov"] [uri "/wp-json/wp/v2/users"] [unique_id "aonZezBLZoQ2DqWqIDfZRgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 15:33:09
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.y ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.171.254 (static.254.171.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 11:33:03.861396 2026] [security2:error] [pid 17565:tid 17565] [client 95.216.171.254:62786] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mightyhoop.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mightyhoop.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aonBL81UJmZOvIhcAZ91ewAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack