πΉπ·
Threat.live
2026-09-18 02:50:02
(1 hour ago)
Suspicious Connection Attempts
Brute-Force
π©πͺ
Riko
2026-09-17 22:00:08
(5 hours ago)
Fail2ban SSH Bruteforce
Brute-Force
SSH
Anonymous
2026-09-17 00:10:37
(1 day ago)
eval-stdin.php
Hacking
Brute-Force
Web App Attack
π©πͺ
FeG Deutschland
2026-09-16 22:09:11
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
π©πͺ
SΓ©fora Srl
2026-09-16 12:03:27
(1 day ago)
crowdsecurity/http-probing detected by CrowdSec
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 04:06:20
(1 day ago)
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:06:14.782191 2026] [security2:error] [pid 10199:tid 10223] [client 37.60.252.141:57844] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||supercyprus.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "supercyprus.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqoVts-odEyd3Utr2PNRXwAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 01:08:56
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:08:52.261663 2026] [security2:error] [pid 1841707:tid 1841707] [client 37.60.252.141:33878] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||btsalesrep.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "btsalesrep.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqnsJHAJdt1wC1V-zTAd5AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 19:58:56
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:58:50.129676 2026] [security2:error] [pid 10144:tid 10194] [client 37.60.252.141:43346] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||willmanlawfirm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "willmanlawfirm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqmjerLxS6jRdy0S2GkqgAAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
FeG Deutschland
2026-09-15 18:25:44
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 18:22:13
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:22:08.425903 2026] [security2:error] [pid 14302:tid 14302] [client 37.60.252.141:51756] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kontikimotorcycles.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kontikimotorcycles.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqmM0DGu7xIcbUC-KyV2AQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-09-15 14:45:38
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 13:26:06
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 09:26:02.686456 2026] [security2:error] [pid 19436:tid 19436] [client 37.60.252.141:58298] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||crr-construction.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "crr-construction.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqlHau3lSTTdbjvRX0AHogAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 13:22:58
(2 days ago)
Blocked: Reason='N/A'; Requests=
Hacking
πΊπΈ
TPI-Abuse
2026-09-15 12:27:31
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 37.60.252.141 (vmi2896848.contaboserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 08:27:26.492816 2026] [security2:error] [pid 13671:tid 13671] [client 37.60.252.141:55836] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cliniquecavalancia.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cliniquecavalancia.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aqk5rmGymmG1feEd-KohywAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
BlueWire Hosting
2026-09-15 04:00:27
(2 days ago)
Aggressive scanning resulting into 404
Bad Web Bot