Anonymous
2025-08-05 03:08:56
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇺🇸
TPI-Abuse
2025-07-30 23:40:04
(10 months ago)
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 30 19:39:58.359689 2025] [security2:error] [pid 2099:tid 2099] [client 154.94.13.182:53027] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||curryfirm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "curryfirm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aIqtTpiyJEHGiEpoHKc-DgAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-07-02 03:41:42
(11 months ago)
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 01 23:41:35.507309 2025] [security2:error] [pid 22317:tid 22317] [client 154.94.13.182:53427] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||holesandcorners.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "holesandcorners.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aGSqb_ArA2BEACkn_LfHUgAAAA8"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-06-25 21:25:15
(11 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇺🇸
TPI-Abuse
2025-05-13 18:02:24
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 13 14:02:21.180771 2025] [security2:error] [pid 3870097:tid 3870097] [client 154.94.13.182:57433] [client 154.94.13.182] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lowrygroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lowrygroup.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aCOJLQ-geycw6BCK63OyIQAAAA4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Packets-Decreaser.NET
2025-05-04 16:04:45
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
🇬🇧
uira.live
2025-05-04 11:21:51
(1 year ago)
Malicious activity detected from 200373 DREI-K-TECH-GMBH towards host uira.live (GET HTTP/2) @ 2025- ...
show more
Malicious activity detected from 200373 DREI-K-TECH-GMBH towards host uira.live (GET HTTP/2) @ 2025-05-04T11:21:51Z (1 occurrences)
show less
DDoS Attack
🇦🇺
MAGIC
2025-05-04 03:10:14
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
Anonymous
2025-05-02 12:18:39
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2025-04-24 09:22:11
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇺🇸
TPI-Abuse
2025-04-19 10:18:10
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 19 06:18:06.868099 2025] [security2:error] [pid 1455488:tid 1455488] [client 154.94.13.182:30247] [client 154.94.13.182] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||tempsetters.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "tempsetters.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aAN4XsrKcdtaA4RSjVxzIAAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-04-15 15:04:16
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 15 11:04:10.211420 2025] [security2:error] [pid 3510732:tid 3510732] [client 154.94.13.182:11139] [client 154.94.13.182] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||goodpage.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "goodpage.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_51ahATqMasuA-GkOq-fAAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Swiptly
2025-03-22 14:37:56
(1 year ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
🇺🇸
nowyouknow
2025-03-22 10:45:04
(1 year ago)
(From [email protected] ) Hey there, I came across your website and was impressed—great work!
...
show more
(From [email protected] ) Hey there, I came across your website and was impressed—great work!
I know your time is valuable, so I’ll be brief.
AI is essential for business growth, and many owners struggle to know where to start—that’s why I’m here to help.
We’ve created two guides called AI For Entrepreneurs and Smarter with AI, normally priced at $29 each, and we're offering it to you for free. Inside, you’ll discover:
+ How to quickly increase your business/website revenue.
+ A simple framework for incorporating AI into your business.
+ Proven strategies to boost productivity and save time.
+ Expert tips to get results, whether you're just starting or well-established.
Remember, this is absolutely free and will cost you nothing!
Would you like a free copy?
Get yor guide here: http://aibusinessmastery.pro
I’m confident it’ll be a game-changer for you, and I’d love to hear how it works for your business!
Best regards
show less
Phishing
Web Spam
🇺🇸
TPI-Abuse
2025-03-12 08:33:27
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 154.94.13.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 12 04:33:19.892261 2025] [security2:error] [pid 13703:tid 13703] [client 154.94.13.182:47011] [client 154.94.13.182] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||limpiezadevidriosyoficinas.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "limpiezadevidriosyoficinas.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z9FGzza9e4SLyfkXR68rwAAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack