๐ช๐ธ
librebit
2026-09-14 09:14:30
(2 days ago)
RDWeb scan
Web App Attack
๐ช๐ธ
librebit
2026-09-07 13:56:45
(1 week ago)
RDWeb scan
Web App Attack
๐ช๐ธ
librebit
2026-09-02 18:20:47
(1 week ago)
RDWeb scan
Web App Attack
๐ช๐ธ
librebit
2026-09-01 09:10:36
(2 weeks ago)
RDWeb scan
Web App Attack
Anonymous
2026-08-06 08:30:03
(1 month ago)
| Multiple SQL injection attempts from same source ip.(multiple servers)
Web App Attack
Hacking
SQL Injection
๐ณ๐ฟ
billyborsht
2026-05-03 14:26:20
(4 months ago)
2026-05-04T02:26:19.245582+12:00 southern wordpress(abrahamic.nz)[102020]: Authentication attempt fo ...
show more
2026-05-04T02:26:19.245582+12:00 southern wordpress(abrahamic.nz)[102020]: Authentication attempt for unknown user [email protected] from 130.49.10.241
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-01 05:28:21
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 01:28:16.724764 2026] [security2:error] [pid 27261:tid 27261] [client 130.49.10.241:32269] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||achildsspace.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "achildsspace.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acys8A13aXDsMPmY3ZFWeAAAAAU"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-03-26 23:13:41
(5 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-26 18:34:15
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 14:34:07.773433 2026] [security2:error] [pid 13579:tid 13579] [client 130.49.10.241:38193] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||greasythings.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "greasythings.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acV8H14C1IXFl8znpm1KIwAAABk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 22:37:16
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 18:37:08.461091 2026] [security2:error] [pid 7776:tid 7776] [client 130.49.10.241:38419] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||qbasys.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "qbasys.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acRjlETQ3RlZx78V5H5oygAAABI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-17 11:37:25
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.10.241 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 17 07:37:18.537306 2026] [security2:error] [pid 9516:tid 9516] [client 130.49.10.241:40857] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jeffautry.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jeffautry.com"] [uri "/wp-json/wp/v2/users"] [unique_id "abk87qK2O4phpvT7clLQiwAAAAc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-03-16 16:35:00
(5 months ago)
Accessed trap at '/xmlrpc.php'
Web App Attack
๐ฆ๐บ
oncord
2026-02-08 19:01:45
(7 months ago)
Form spam
Web Spam
๐ซ๐ท
masterguru
2026-02-07 02:15:26
(7 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 130.49.10.241 (NL/The Netherlands/-): 1 in the ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 130.49.10.241 (NL/The Netherlands/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ซ๐ท
masterguru
2026-02-07 00:25:42
(7 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 130.49.10.241 (NL/The Netherlands/-): 1 in the ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 130.49.10.241 (NL/The Netherlands/-): 1 in the last 3600 secs (0-197)
show less
Hacking