๐บ๐ธ
TPI-Abuse
2026-06-17 17:41:34
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 13:41:27.427143 2026] [security2:error] [pid 22328:tid 22328] [client 130.49.113.117:20415] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||scotts.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "scotts.net"] [uri "/wp-json/wp/v2/users"] [unique_id "ajLcR2x9jNfohsELKMZaYgAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 12:26:45
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 08:26:40.163705 2026] [security2:error] [pid 22302:tid 22370] [client 130.49.113.117:56447] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||zechesfinancialservices.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "zechesfinancialservices.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ai_vgArPd6Fg9jG6pbvaKwAAAMY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-14 17:29:24
(1 week ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
kosada.com
2026-06-07 17:38:22
(2 weeks ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-26 13:19:30
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 09:19:22.626654 2026] [security2:error] [pid 25796:tid 25796] [client 130.49.113.117:35871] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||randyshelly.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "randyshelly.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahWd2pAQAu5f1k8JbFN9zAAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
tilellit.pro
2026-05-21 12:17:12
(1 month ago)
Fail2Ban banned 130.49.113.117 for security violations in jail wp-armour. Log: 2026/05/21 12:17:12 [ ...
show more
Fail2Ban banned 130.49.113.117 for security violations in jail wp-armour. Log: 2026/05/21 12:17:12 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 130.49.113.117 | Target: wplogin" , client: 130.49.113.117, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐บ๐ธ
nationaleventpros.com
2026-05-20 05:01:10
(1 month ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-06 13:58:45
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 09:58:40.290470 2026] [security2:error] [pid 23173:tid 23173] [client 130.49.113.117:50645] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mwrn.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mwrn.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aftJEGgiKSBW0Y93gz5zlwAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-19 11:22:26
(5 months ago)
(mod_security) mod_security (id:240335) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 130.49.113.117 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 19 06:22:21.143178 2026] [security2:error] [pid 12084:tid 12084] [client 130.49.113.117:62047] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 130.49.113.117 (+1 hits since last alert)|scorpio01.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "scorpio01.com"] [uri "/xmlrpc.php"] [unique_id "aW4T7bKD-ugCPFgOv3OXHwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-01-18 03:55:12
(5 months ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ท๐ด
INTEQ
2026-01-17 22:46:33
(5 months ago)
Web attack from 130.49.113.117
Web App Attack