Anonymous
2025-07-17 20:56:03
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2025-05-16 00:06:50
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฉ๐ช
bsoft.de
2025-04-16 17:58:33
(1 year ago)
5.183.130.246 - - [16/Apr/2025:19:58:32 +0200] "GET /wp-content/plugins/suretriggers/readme.txt HTTP ...
show more
5.183.130.246 - - [16/Apr/2025:19:58:32 +0200] "GET /wp-content/plugins/suretriggers/readme.txt HTTP/1.1" 301 285 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
show less
Bad Web Bot
Web App Attack
๐ธ๐ช
SkyDancer
2025-04-09 10:22:28
(1 year ago)
Multiple web intrusion attempts or RDP/SSH hacking using wrong credentials. Attack automatically blo ...
show more
Multiple web intrusion attempts or RDP/SSH hacking using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Ai-D
show less
Hacking
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-04-08 01:31:15
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 07 21:31:12.649104 2025] [security2:error] [pid 7531:tid 7531] [client 5.183.130.246:47405] [client 5.183.130.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mccompu.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mccompu.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_R8YNjYXhukRykUgcZCZQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-07 23:47:11
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 07 19:47:07.541704 2025] [security2:error] [pid 31934:tid 31934] [client 5.183.130.246:34551] [client 5.183.130.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||kimbrothersusa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "kimbrothersusa.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_Rj-217M7GKnUoudCmCFQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-07 23:09:28
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 07 19:09:21.225915 2025] [security2:error] [pid 27691:tid 27691] [client 5.183.130.246:58049] [client 5.183.130.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jerielster.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jerielster.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_RbITTKxs1R3-Jmav2xzQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-07 20:05:51
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 07 16:05:45.722985 2025] [security2:error] [pid 18700:tid 18727] [client 5.183.130.246:38843] [client 5.183.130.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||fastestcopyright.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "fastestcopyright.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_QwGSXmwVcaaptDzNsuLgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-07 19:01:37
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 07 15:01:33.093347 2025] [security2:error] [pid 10741:tid 10741] [client 5.183.130.246:56265] [client 5.183.130.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||drjasonkolber.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "drjasonkolber.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_QhDV70B3xR8KiOzNj59wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-07 17:42:21
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 5.183.130.246 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 07 13:42:15.827154 2025] [security2:error] [pid 31476:tid 31476] [client 5.183.130.246:40523] [client 5.183.130.246] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||comerceclips.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "comerceclips.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_QOd0LcrZDfr3uCH9CnowAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
octageeks.com
2025-04-05 04:09:14
(1 year ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ฉ๐ช
FeG Deutschland
2025-04-04 18:30:21
(1 year ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 14
Exploited Host
Web App Attack
๐ฉ๐ช
bsoft.de
2025-04-04 12:14:20
(1 year ago)
5.183.130.246 - - [04/Apr/2025:14:14:19 +0200] "GET /wp-content/themes/woffice/readme.txt HTTP/1.1" ...
show more
5.183.130.246 - - [04/Apr/2025:14:14:19 +0200] "GET /wp-content/themes/woffice/readme.txt HTTP/1.1" 301 267 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2025-04-01 00:11:40
(1 year ago)
Form spam
Web Spam
๐บ๐ธ
octageeks.com
2025-03-22 04:12:02
(1 year ago)
Wordpress malicious attack:[octa404]
Web App Attack