๐ฌ๐ง
consul.to
2026-07-24 19:24:33
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐จ๐ฟ
huginet
2026-07-19 18:00:41
(5 days ago)
130.49.77.49 - - [19/Jul/2026:20:00:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 181 "-" "Apache-HttpCl ...
show more
130.49.77.49 - - [19/Jul/2026:20:00:39 +0200] "POST /xmlrpc.php HTTP/1.1" 200 181 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)"
130.49.77.49 - - [19/Jul/2026:20:00:40 +0200] "POST /xmlrpc.php HTTP/1.1" 503 19382 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)"
...
show less
Web Spam
Blog Spam
Hacking
Bad Web Bot
Web App Attack
๐จ๐ฆ
DRI
2026-07-19 09:24:24
(5 days ago)
Web attack/Malicious activity detected
Web App Attack
๐จ๐ฟ
ptlab
2026-07-18 22:45:38
(6 days ago)
Detected wp_login attack from WP-host.
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-10 21:32:19
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 257
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-10 15:02:46
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 10 11:02:41.621962 2026] [security2:error] [pid 26695:tid 26717] [client 130.49.77.49:12771] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||transitionalcareservices.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "transitionalcareservices.com"] [uri "/wp-json/wp/v2/users"] [unique_id "alEJkcEOPrURGTQSuOuzSAAAANA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-14 20:33:39
(1 month ago)
WordPress login attempt
Brute-Force
๐บ๐ธ
kosada.com
2026-06-02 03:29:21
(1 month ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-01 17:18:00
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 13:17:54.720222 2026] [security2:error] [pid 6305:tid 6305] [client 130.49.77.49:37445] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||christinepeat.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "christinepeat.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah2-ws01voFITSAwwbtHMgAAABo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-05-22 15:50:10
(2 months ago)
Web password guessing
Brute-Force
๐ซ๐ฎ
inlink.ltd
2026-05-18 07:07:25
(2 months ago)
Known malicious PHP file or CMS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-18 04:55:40
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 00:55:33.009773 2026] [security2:error] [pid 15268:tid 15268] [client 130.49.77.49:16061] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eye7graphics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eye7graphics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agqbxWwuee7RNj3-Utvj8AAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 15:12:58
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.77.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 11:12:51.728181 2026] [security2:error] [pid 23472:tid 23472] [client 130.49.77.49:34689] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||evelynkay.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "evelynkay.com"] [uri "/wp-json/wp/v2/users"] [unique_id "agSU8-7vRcuAX9LT3qrvtQAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-05-11 13:30:07
(2 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐ฉ๐ช
kjaerulff
2026-05-10 13:48:28
(2 months ago)
Failed Wordpress login using wp-login.php
Web App Attack