๐บ๐ธ
xmission.com
2026-02-20 11:52:34
(5 months ago)
Blocked by UFW (TCP on 50928)
Source port: 443
TTL: 114
Packet length: 40
TOS: 0x00
This report (fo ...
show more
Blocked by UFW (TCP on 50928)
Source port: 443
TTL: 114
Packet length: 40
TOS: 0x00
This report (for 13.67.63.90) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฉ๐ฐ
wnbhosting.dk
2024-11-18 11:12:32
(1 year ago)
WP xmlrpc [2024-11-18T12:12:32+01:00]
Hacking
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-11-13 15:54:09
(1 year ago)
WP xmlrpc [2024-11-13T16:54:09+01:00]
Hacking
Web App Attack
Anonymous
2024-11-13 06:15:56
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2024-11-06 05:59:57
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 06 00:59:54.197281 2024] [security2:error] [pid 1615357:tid 1615357] [client 13.67.63.90:6209] [client 13.67.63.90] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||systemcapacityoptimization.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "systemcapacityoptimization.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZysF2S4Z2a7-S9-_HDzT4AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-05 18:26:15
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 13:26:09.996181 2024] [security2:error] [pid 2332:tid 2332] [client 13.67.63.90:6209] [client 13.67.63.90] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||greatwesternfirearms.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "greatwesternfirearms.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZypjQW3uHhLmyicxjn-mAwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-05 17:48:27
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 12:48:19.549095 2024] [security2:error] [pid 19010:tid 19010] [client 13.67.63.90:6209] [client 13.67.63.90] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hotpay.co|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hotpay.co"] [uri "/wp-json/wp/v2/users"] [unique_id "ZypaYxwK6TOeH71gfQf6cQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-05 17:12:31
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 05 12:12:25.960340 2024] [security2:error] [pid 231491:tid 231491] [client 13.67.63.90:6209] [client 13.67.63.90] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kotelbarmitzvah.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kotelbarmitzvah.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZypR-ZyuCNWLYbAGKytesAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-10-30 09:29:54
(1 year ago)
WP xmlrpc [2024-10-30T10:29:54+01:00]
Hacking
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-10-29 10:07:39
(1 year ago)
WP xmlrpc [2024-10-29T11:07:39+01:00]
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-29 02:54:26
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 13.67.63.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 28 22:54:23.227441 2024] [security2:error] [pid 19381:tid 19381] [client 13.67.63.90:6209] [client 13.67.63.90] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gabbyspetnanny.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gabbyspetnanny.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ZyBOXvovPtMbAPPjhuYsxgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-10-27 18:21:08
(1 year ago)
WP xmlrpc [2024-10-27T19:21:08+01:00]
Hacking
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-10-27 08:52:55
(1 year ago)
WP xmlrpc [2024-10-27T09:52:55+01:00]
Hacking
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2024-10-26 02:33:08
(1 year ago)
Fail2Ban - [NGINX]WordPress Logins Sniffings on nginx-wordpress-sniffer
... [wa02]
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
wnbhosting.dk
2024-10-25 06:03:53
(1 year ago)
WP xmlrpc [2024-10-25T08:03:53+02:00]
Hacking
Web App Attack