๐บ๐ธ
TPI-Abuse
2026-06-12 08:00:40
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 04:00:34.424037 2026] [security2:error] [pid 3343:tid 3343] [client 130.49.76.195:65077] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fnavarro.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fnavarro.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiu8oq492Z2w39FM12pmiQAAABs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-06-11 04:20:50
(3 days ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-09 12:30:49
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:30:41.921805 2026] [security2:error] [pid 29508:tid 29508] [client 130.49.76.195:22909] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nnrentacar.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nnrentacar.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aigHcW6d9-XCbLntjwdOtQAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:26:41
(5 days ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:26:37.065532 2026] [security2:error] [pid 3203:tid 3220] [client 130.49.76.195:26141] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jevan1.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jevan1.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aifOPV24uNehK-aXCxKBSAAAAEc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 18:54:26
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 14:54:21.067098 2026] [security2:error] [pid 17497:tid 17497] [client 130.49.76.195:53059] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||callalbany.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "callalbany.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiHJ3R0TAkQYElBMY32-EQAAAA4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-04 13:52:42
(1 week ago)
[ThuJun0415:52:35.5423692026][security2:error][pid232836:tid233142][client130.49.76.195:0]ModSecurit ...
show more
[ThuJun0415:52:35.5423692026][security2:error][pid232836:tid233142][client130.49.76.195:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"367\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"motogiro.com\"][uri\"/xmlrpc.php\"][unique_id\"aiGDI9KK3lNiqS6ATwEOLQAAAQo\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 21:48:50
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 17:48:47.214613 2026] [security2:error] [pid 29194:tid 29194] [client 130.49.76.195:39795] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||leadek.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "leadek.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah3-P7d7lJWK8wajfzHNmAAAABE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-05-30 15:50:08
(2 weeks ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-24 20:25:39
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 16:25:32.431032 2026] [security2:error] [pid 26840:tid 26840] [client 130.49.76.195:16471] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||miszewski.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "miszewski.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahNevLNlvhHVe0e9Q7k7cQAAABE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-22 14:08:39
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 10:08:31.890611 2026] [security2:error] [pid 22821:tid 22821] [client 130.49.76.195:56739] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ironpagoda.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ironpagoda.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahBjXwwQJZMZbIUgbsINswAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2026-05-14 18:18:14
(4 weeks ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
kosada.com
2026-05-13 05:08:04
(1 month ago)
Web password guessing
Brute-Force
๐บ๐ธ
ne1for23
2026-03-20 20:27:01
(2 months ago)
130.49.76.195 - - [20/Mar/2026:20:27:01 +0000] "POST /xmlrpc.php HTTP/1.1" 403 153 "-" "curl/8.6.0"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-22 16:18:43
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.76.195 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 11:18:39.165948 2026] [security2:error] [pid 3232587:tid 3232591] [client 130.49.76.195:17519] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||piazza9.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "piazza9.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aXJN3xWkqHH_vddzehKqrQAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-10 14:37:40
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam