๐บ๐ธ
TPI-Abuse
2026-09-03 18:55:22
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:55:17.655236 2026] [security2:error] [pid 18610:tid 18610] [client 82.165.83.170:56970] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jvwebinars.vanemby.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jvwebinars.vanemby.com"] [uri "/wp-json/wp/v2/users"] [unique_id "apnClbCcMDh9hD6a58mV-wAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-09-03 17:59:22
(1 week ago)
trolling for resource vulnerabilities
Web App Attack
๐ซ๐ท
ELYAZ
2026-08-31 21:26:56
(1 week ago)
(wordpress) Failed wordpress login from 82.165.83.170 (DE/Germany/-): (CF_ENABLE)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-31 16:40:55
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 12:40:47.824673 2026] [security2:error] [pid 3608:tid 3608] [client 82.165.83.170:40858] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||webersource.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "webersource.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apWujx_jCyU7oGC4jAYybwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-31 04:18:34
(1 week ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 82.165.83.170 (DE/Germany/infong-fr11.clienth ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 82.165.83.170 (DE/Germany/infong-fr11.clienthosting.eu): 1 in the last 3600 secs (0-196)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-30 22:20:18
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 18:20:11.457394 2026] [security2:error] [pid 31149:tid 31149] [client 82.165.83.170:57132] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.rame-int.marklex.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.rame-int.marklex.com"] [uri "/wp-json/wp/v2/users/me"] [unique_id "apSsm9cHab9_26InSkM-pgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
wpadm4
2026-08-30 19:37:40
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ซ๐ท
masterguru
2026-08-30 09:56:46
(1 week ago)
(modsec_5040) ModSec 5040: API Basic Auth blocked from 82.165.83.170 (DE/Germany/infong-fr11.clienth ...
show more
(modsec_5040) ModSec 5040: API Basic Auth blocked from 82.165.83.170 (DE/Germany/infong-fr11.clienthosting.eu): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
neckaralb-admin.de
2026-08-30 09:46:21
(1 week ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ฉ๐ช
AlexEventfahrtenIPDB
2026-08-27 15:51:35
(2 weeks ago)
[Thu Aug 27 17:51:34.708313 2026] [authz_core:error] [pid 1391829:tid 1391854] [remote 82.165.83.170 ...
show more
[Thu Aug 27 17:51:34.708313 2026] [authz_core:error] [pid 1391829:tid 1391854] [remote 82.165.83.170:52308] AH01630: client denied by server configuration: /var/www/std-sites/cadillac/wp-login.php
[Thu Aug 27 17:51:35.071961 2026] [authz_core:error] [pid 1391829:tid 1391831] [remote 82.165.83.170:52322] AH01630: client denied by server configuration: /var/www/std-sites/cadillac/wp-login.php, referer: https://alex-eventfahrten.spdns.de/wp-login.php
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:25:56
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 82.165.83.170 (infong-fr11.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:25:48.986400 2026] [security2:error] [pid 21009:tid 21009] [client 82.165.83.170:60502] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||citrineartstudio.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "citrineartstudio.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ao6G7FUCILiY9No4IAh_CAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-24 00:14:45
(2 weeks ago)
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: ...
show more
Malicious web request: probing for secrets, traversal or a known exploit path | method: GET | path: /wp-json/wp/v2/users | 2026-08-24 00:14 UTC
show less
Hacking
Web App Attack
Anonymous
2026-08-24 00:10:37
(2 weeks ago)
WordPress Brute Force
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-18 22:07:25
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-08-14 13:47:42
(4 weeks ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack