๐ซ๐ท
dynamix
2026-10-04 13:42:46
(4 hours ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
Tilellit.PRO
2026-05-21 23:00:34
(4 months ago)
Fail2Ban banned 130.49.9.68 for security violations in jail wp-armour. Log: 2026/05/21 23:00:33 [err ...
show more
Fail2Ban banned 130.49.9.68 for security violations in jail wp-armour. Log: 2026/05/21 23:00:33 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 130.49.9.68 | Target: wplogin" , client: 130.49.9.68, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐ซ๐ท
Tilellit.PRO
2026-05-20 03:42:13
(4 months ago)
Fail2Ban banned 130.49.9.68 for security violations in jail wp-armour. Log: 2026/05/20 03:42:12 [err ...
show more
Fail2Ban banned 130.49.9.68 for security violations in jail wp-armour. Log: 2026/05/20 03:42:12 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 130.49.9.68 | Target: wplogin" , client: 130.49.9.68, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
๐บ๐ธ
TPI-Abuse
2026-05-05 15:05:53
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 05 11:05:48.714186 2026] [security2:error] [pid 31256:tid 31256] [client 130.49.9.68:48491] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||Gonzalez.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gonzalez.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afoHTO9W58YWAiWzcW9UFAAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Oakley
2026-04-23 21:09:06
(5 months ago)
(antiscrape_rule) Web application abuse detected 130.49.9.68 (FR/France/-): 5 in the last 900 secs
Hacking
๐บ๐ธ
TPI-Abuse
2025-12-17 19:20:11
(9 months ago)
(mod_security) mod_security (id:210350) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210350) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 17 14:20:06.666002 2025] [security2:error] [pid 20406:tid 20406] [client 130.49.9.68:15419] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||imageries.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "imageries.net"] [uri "/"] [unique_id "aUMCZoD_gwq8nAbUc1paJgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-10-18 07:45:12
(11 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-10-16 14:12:38
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 16 10:12:30.763021 2025] [security2:error] [pid 14730:tid 14730] [client 130.49.9.68:15577] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||convtek.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "convtek.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aPD9TubehrNb9Nx27VTuCgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-14 21:32:44
(11 months ago)
Failed Wordpress login
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-13 05:06:58
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.9.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 13 01:06:52.967421 2025] [security2:error] [pid 26035:tid 26035] [client 130.49.9.68:65259] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||denvercitymotorparts.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "denvercitymotorparts.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aOyI7C8_eO1GpIqpLBDDmwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack