๐ฎ๐ฉ
hermawan
2026-06-11 23:32:55
(19 hours ago)
[Fri Jun 12 06:32:51.279655 2026] [security2:error] [pid 2063018:tid 139768470943424] [client 182.10 ...
show more
[Fri Jun 12 06:32:51.279655 2026] [security2:error] [pid 2063018:tid 139768470943424] [client 182.10.130.70:28000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "582"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/profil/meteorologi/list-all-categories HTTP/2.0"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/profil/meteorologi/list-all-categories"] [unique_id "aitFo-B0lUiaEzZaGV6OdgAAAAM"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[2063022] [Aq1Cx8Lf+I0] [aitFo-B0lUiaEzZaGV6OdgAAAAM] keep_alive=[1] [2026-06-12 06:32:51.279852] [R:aitFo-B0lUiaEzZaGV6OdgAAAAM] UA:'Mozilla/5.0 (iPhone; CPU iPhone OS 15_6 like Mac OS X) AppleWebKit/605.1.15
...
show less
Email Spam
Hacking
๐บ๐ธ
matt
2026-03-02 20:14:13
(3 months ago)
DDOS attack on complex filter web page in order to take down site.
DDoS Attack
Anonymous
2026-01-11 14:47:48
(5 months ago)
Unauthorized connection attempt on Port 23
Port Scan
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-12-24 13:10:49
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 24 08:10:43.543236 2025] [security2:error] [pid 3382:tid 3564] [client 182.10.130.70:40791] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||e-dome.co.jp|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "e-dome.co.jp"] [uri "/wp-json/wp/v2/users"] [unique_id "aUvmU77_nftitf7ZnLc0ewAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
stinpriza
2025-12-24 11:30:13
(5 months ago)
Web App Attack
Web App Attack
Anonymous
2025-12-24 10:16:34
(5 months ago)
Bot / scanning and/or hacking attempts: POST /xmlrpc.php HTTP/1.1
Hacking
Web App Attack
๐ท๐บ
DZBOT
2025-12-24 08:25:32
(5 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-24 07:20:41
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 24 02:20:36.121364 2025] [security2:error] [pid 28722:tid 28722] [client 182.10.130.70:9997] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dyslexiaspecialistsonline.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dyslexiaspecialistsonline.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aUuURKUac3c3AdKFyjEjPAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
applemooz
2025-12-24 07:17:27
(5 months ago)
WordPress XMLRPC Brute Force Attacks
...
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-24 05:42:36
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 24 00:42:30.184806 2025] [security2:error] [pid 13130:tid 13130] [client 182.10.130.70:34244] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dynarol.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dynarol.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aUt9RpKl_B6evLLjBoxoKQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-24 03:37:48
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 23 22:37:45.568661 2025] [security2:error] [pid 26097:tid 26097] [client 182.10.130.70:2489] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dymesich.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dymesich.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aUtgCXxYktZcSUNs8tqVYAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
masterguru
2025-12-10 02:23:45
(6 months ago)
COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487). Operato ...
show more
COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. (225170-122)
show less
Hacking
Web App Attack
๐ช๐ธ
masterguru
2025-12-09 23:20:04
(6 months ago)
COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487). Operato ...
show more
COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. (225170-123)
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-09 21:51:57
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 16:51:54.234518 2025] [security2:error] [pid 31211:tid 31211] [client 182.10.130.70:32728] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||autocares-belintxon.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "autocares-belintxon.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aTiZ-lk8bWbOy6r1p8KJvwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-09 20:19:25
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 182.10.130.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 15:19:18.907960 2025] [security2:error] [pid 20645:tid 20645] [client 182.10.130.70:21871] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||autobee.biz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "autobee.biz"] [uri "/wp-json/wp/v2/users"] [unique_id "aTiERnmiCGMHSQ5GaVWY4gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack