๐บ๐ธ
cwytech
2026-08-07 07:21:49
(2 weeks ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/wordpress-geofence-sus.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-03 15:00:21
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 11:00:13.384758 2026] [security2:error] [pid 973901:tid 973901] [client 45.122.244.110:56304] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tradersworldmarket.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tradersworldmarket.com"] [uri "/index.php/wp-json/wp/v2/users"] [unique_id "anCs_WzaloV_bOTvnWvHYQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Tilellit.PRO
2026-07-31 08:46:14
(3 weeks ago)
WP Armour Plugin detection
Web Spam
Brute-Force
๐ฒ๐ฝ
octageeks.com
2026-07-30 04:20:10
(4 weeks ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 23:30:59
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 19:30:47.791389 2026] [security2:error] [pid 2156389:tid 2156389] [client 45.122.244.110:49314] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.dev.ericadamsdesign.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.dev.ericadamsdesign.com"] [uri "/wp-json/wp/v2/users"] [unique_id "amfqJzi2rWVAqZoqLq_icQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 11:47:56
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 07:47:43.714426 2026] [security2:error] [pid 26714:tid 26714] [client 45.122.244.110:41740] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.theaccents.mainstreetofficesuites.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.theaccents.mainstreetofficesuites.com"] [uri "/wp/wp-json/wp/v2/users"] [unique_id "amdFX9XohTUndV-dXadB2wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-07-22 09:51:16
(1 month ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 20:06:19
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 16:06:11.012113 2026] [security2:error] [pid 5227:tid 5227] [client 45.122.244.110:40882] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zoesaadeh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zoesaadeh.com"] [uri "/index.php/wp-json/wp/v2/users"] [unique_id "al_RM-bTInWeNFmQorHuggAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-07-19 09:13:08
(1 month ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-07-19 06:49:13
(1 month ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-03 13:08:15
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 09:08:09.224268 2026] [security2:error] [pid 7440:tid 7450] [client 45.122.244.110:38060] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||planmytrust.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "planmytrust.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ake0OR3DXH5DpLXASM9KJwAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-07-01 08:59:10
(1 month ago)
WordPress bruteforce
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 00:07:58
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the ...
show more
(mod_security) mod_security (id:225170) triggered by 45.122.244.110 (cpanel.tidadigi.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 20:07:50.407607 2026] [security2:error] [pid 21471:tid 21471] [client 45.122.244.110:53864] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||prayers4america.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "prayers4america.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akG3ViF7KGXmEZhKQs3E2gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-15 19:42:32
(2 months ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
lostswordfish.com
2026-06-15 19:34:04
(2 months ago)
Wordfence waf block on wp20190711M4
Web App Attack