๐บ๐ธ
TPI-Abuse
2026-06-20 08:01:13
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 20 04:01:05.220322 2026] [security2:error] [pid 21959:tid 21959] [client 95.216.97.139:44464] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sharawi-gum.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sharawi-gum.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajZIwR_U7Our15iWLiVJKwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 09:16:26
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 05:16:22.011398 2026] [security2:error] [pid 25939:tid 25939] [client 95.216.97.139:49762] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pattenden.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pattenden.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajUI5i_udWN-fSlwCh5GYwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 04:14:03
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 00:13:55.088352 2026] [security2:error] [pid 24167:tid 24167] [client 95.216.97.139:42716] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dvdmasters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dvdmasters.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajTCAx4cfrRb2eFZa9q9YwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
NotCool
2026-06-18 19:33:45
(2 days ago)
[7200] (WPLOGIN,XMLRPC) Login failure/trigger from 95.216.97.139 (FI/Finland/static.139.97.216.95.cl ...
show more
[7200] (WPLOGIN,XMLRPC) Login failure/trigger from 95.216.97.139 (FI/Finland/static.139.97.216.95.clients.your-server.de): 50 in the last 3600 secs
show less
Brute-Force
๐ฆ๐บ
screwlooseit.com.au
2026-06-16 16:00:58
(4 days ago)
Blocked by CSF 13 firewall - Rule: FI/Finland/static.139.97.216.95.clients.your-server.de
Web App Attack
Anonymous
2026-06-16 12:18:12
(4 days ago)
Multiple web server 400 error codes from same source ip
Web App Attack
Anonymous
2026-06-15 15:24:10
(5 days ago)
Attac
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-12 22:44:04
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 18:44:01.069795 2026] [security2:error] [pid 11245:tid 11245] [client 95.216.97.139:59776] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||automatebi.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "automatebi.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiyLsTEUSEQrryhvfUHm5gAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 20:18:35
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 16:18:29.145990 2026] [security2:error] [pid 9532:tid 9532] [client 95.216.97.139:42876] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.sizefinder.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.sizefinder.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aisYFcGTsWFnyXGdiQaGcwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 16:32:03
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 12:31:58.644425 2026] [security2:error] [pid 1613:tid 1613] [client 95.216.97.139:60680] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.teleplussolutions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.teleplussolutions.com"] [uri "/wp-json/wp/v2/users"] [unique_id "airi_r-58gzPLCLmgkCBWAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 01:24:53
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 21:24:48.682997 2026] [security2:error] [pid 31608:tid 31627] [client 95.216.97.139:42338] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||landmarkocchealth.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "landmarkocchealth.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aioOYIIXe11BrYU8L_PNkAAAANE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 19:13:37
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 15:13:29.609064 2026] [security2:error] [pid 31699:tid 31699] [client 95.216.97.139:52214] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.whodatnation.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.whodatnation.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aim3WbNORXuPx_laJO1qNwAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 00:28:40
(1 week ago)
[redacted] 95.216.97.139 - - [09/Jun/2026:02:28:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "M ...
show more
[redacted] 95.216.97.139 - - [09/Jun/2026:02:28:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:48.0) Gecko/20100101 Firefox/48.0"
[redacted] 95.216.97.139 - - [09/Jun/2026:02:28:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:96.0) Gecko/20100101 Firefox/96.0"
[redacted] 95.216.97.139 - - [09/Jun/2026:02:28:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:47.0) Gecko/20100101 Firefox/47.0"
[redacted] 95.216.97.139 - - [09/Jun/2026:02:28:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:91.0) Gecko/20100101 Firefox/91.0"
[redacted] 95.216.97.139 - - [09/Jun/2026:02:28:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 216 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:49.0) Gecko/20100101 Firefox/49.0"
[redacted] 95.216.97.139 - - [09/Jun/2026:02:28:39 +0200] "POST /xmlrp
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 02:33:55
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.you ...
show more
(mod_security) mod_security (id:225170) triggered by 95.216.97.139 (static.139.97.216.95.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 22:33:51.884540 2026] [security2:error] [pid 13760:tid 13760] [client 95.216.97.139:53828] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ubuciko.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ubuciko.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiYqD62w-dzCP9T9EyY1IgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-07 14:02:28
(1 week ago)
Ports: *; Direction: 0; Trigger: CT_LIMIT
Brute-Force
SSH