๐บ๐ธ
TPI-Abuse
2025-12-29 13:54:06
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 08:54:00.702657 2025] [security2:error] [pid 31146:tid 31146] [client 69.16.157.95:40234] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||citati.net|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "citati.net"] [uri "/wp-json/wp/v2/users"] [unique_id "aVKH-GCjrOuE4xNmhnvTvQAAAAs"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-28 09:07:21
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 04:07:17.776761 2025] [security2:error] [pid 21612:tid 21612] [client 69.16.157.95:60652] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||serpentstudios.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "serpentstudios.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aVDzRZ25Qmza2aC3wKktZAAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 21:20:34
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 16:20:30.348814 2025] [security2:error] [pid 19296:tid 19296] [client 69.16.157.95:57256] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||chiquy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "chiquy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aVBNnuzRBpfk62QiVjvPzgAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 20:29:56
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 15:29:49.291089 2025] [security2:error] [pid 32001:tid 32001] [client 69.16.157.95:50052] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jiggaboojones.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jiggaboojones.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aVBBvYHWzGlCJNPHmvb6BQAAABE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-26 07:31:27
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 ...
show more
(mod_security) mod_security (id:225170) triggered by 69.16.157.95 (69-16-157-95.lin.as62651.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 26 02:31:19.890899 2025] [security2:error] [pid 29813:tid 29813] [client 69.16.157.95:60924] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gepteszt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gepteszt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aU45x08N2FWpXH2n6m8q2wAAAAw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2025-12-26 03:48:08
(8 months ago)
Failed Wordpress login using wp-login.php (69-16-157-95.lin.as62651.net)
Web App Attack
๐จ๐ญ
backslash
2025-12-26 02:40:04
(8 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
Anonymous
2025-12-26 01:13:01
(8 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฏ๐ต
VXG-NET
2025-05-22 06:04:08
(1 year ago)
port=80, indicator_type=sql-injection
SQL Injection
๐น๐ท
Doruk
2025-03-24 23:30:01
(1 year ago)
Unauthorized connection attempt
Brute-Force
Anonymous
2024-04-11 13:17:27
(2 years ago)
Ports: 143,993; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
๐ณ๐ฑ
rshict
2023-10-18 10:02:18
(2 years ago)
Hacking, Brute-Force, Web App Attack
Hacking
Brute-Force
Web App Attack
๐ท๐ด
abuse_IP_reporter
2023-06-11 05:00:07
(3 years ago)
Jun 11 07:47:05 server UFW BLOCK SRC=69.16.157.95 DF PROTO=TCP SPT=57301
Port Scan
๐ท๐ด
abuse_IP_reporter
2023-06-11 04:00:06
(3 years ago)
Jun 11 06:50:46 server UFW BLOCK SRC=69.16.157.95 DF PROTO=TCP SPT=64403
Port Scan
๐ท๐ด
abuse_IP_reporter
2023-06-10 19:00:04
(3 years ago)
Jun 10 21:57:05 server UFW BLOCK SRC=69.16.157.95 DF PROTO=TCP SPT=65391
Port Scan