๐บ๐ธ
TPI-Abuse
2026-02-27 12:43:30
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 167.253.49.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.253.49.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 27 07:43:26.222874 2026] [security2:error] [pid 27666:tid 27684] [client 167.253.49.24:10279] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||peterhansenranch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "peterhansenranch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaGRboSrsa5moiHyQeSSSAAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-27 11:25:32
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 167.253.49.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.253.49.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 27 06:25:25.743670 2026] [security2:error] [pid 16688:tid 16688] [client 167.253.49.24:58039] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||partiklezoo.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "partiklezoo.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaF_JXP7WFi6OJp2q1Cl4AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-27 08:58:52
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 167.253.49.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 167.253.49.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 27 03:58:46.699908 2026] [security2:error] [pid 29367:tid 29367] [client 167.253.49.24:28431] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||nordicbuilders.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "nordicbuilders.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aaFcxnTluoRPG26rp_IprgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2026-01-14 01:05:56
(4 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ธ๐ช
OnTheEdge
2025-11-30 03:18:27
(6 months ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐จ๐ฟ
lp
2025-11-29 01:24:25
(6 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 167.253.49.24
2025-11-29T01:46:31+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 167.253.49.24
2025-11-29T01:46:31+01:00 vpn Access-Reject 'elopez' station: 167.253.49.24 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-11-28 19:23:27
(6 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 167.253.49.24
2025-11-28T18:50:02+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 167.253.49.24
2025-11-28T18:50:02+01:00 vpn Access-Reject 'digital' station: 167.253.49.24 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐จ๐ฟ
lp
2025-11-28 07:25:42
(6 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 167.253.49.24
2025-11-28T07:32:13+01: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 167.253.49.24
2025-11-28T07:32:13+01:00 vpn Access-Reject 'coconut07' station: 167.253.49.24 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐บ๐ธ
[email protected]
2025-11-20 02:47:30
(6 months ago)
Fail2Ban jail apache-json-scanners detected activity on 2025-11-20T02:47:30Z
Brute-Force
๐บ๐ธ
[email protected]
2025-11-20 02:01:50
(6 months ago)
Fail2Ban jail apache-json-scanners detected activity on 2025-11-20T02:01:49Z
Brute-Force
๐บ๐ธ
[email protected]
2025-11-20 01:02:06
(6 months ago)
Fail2Ban jail apache-json-scanners detected activity on 2025-11-20T01:02:05Z
Brute-Force
๐บ๐ธ
[email protected]
2025-11-20 00:02:56
(6 months ago)
Fail2Ban jail apache-json-scanners detected activity on 2025-11-20T00:02:55Z
Brute-Force
๐ฉ๐ช
Packets-Decreaser.NET
2025-11-17 16:50:35
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2024-12-20 20:48:06
(1 year ago)
Attempted brute force login to web vpn
Hacking
Brute-Force
Anonymous
2024-12-18 09:40:17
(1 year ago)
Attempted brute force login to web vpn
Hacking
Brute-Force