๐บ๐ธ
kosada.com
2026-08-11 15:35:52
(6 days ago)
Web contact form spam: casino platform
Web Spam
๐บ๐ธ
TPI-Abuse
2026-08-01 15:38:46
(2 weeks ago)
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 11:38:42.179308 2026] [security2:error] [pid 3949:tid 4004] [client 130.49.78.98:25729] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||robertbellamy.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "robertbellamy.com"] [uri "/wp-json/wp/v2/users"] [unique_id "am4TAk-V1fHMLBnx_Zw5CAAAARc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-07-28 19:57:28
(2 weeks ago)
WordPress login attempt
Brute-Force
๐ฌ๐ท
setupgr
2026-07-14 05:50:12
(1 month ago)
(cpanel) Failed cPanel login from 130.49.78.98 (ES/Spain/Madrid/Madrid/-/[AS35830 BTTGROUP-AS]): 1 i ...
show more
(cpanel) Failed cPanel login from 130.49.78.98 (ES/Spain/Madrid/Madrid/-/[AS35830 BTTGROUP-AS]): 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_CPANEL; Logs: [2026-07-14 08:50:09 +0300] info [cpaneld] 130.49.78.98 - setworldup "POST /login/?login HTTP/1.1" FAILED LOGIN cpaneld: invalid cpanel user setworldup (has_cpuser_file failed)
show less
Port Scan
๐ช๐ธ
librebit
2026-06-22 00:59:26
(1 month ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-04 03:13:25
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 23:13:19.675405 2026] [security2:error] [pid 18804:tid 18804] [client 130.49.78.98:58301] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||baker15.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "baker15.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afgOz2va8d7E1vpxFbUejAAAACI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2026-05-03 23:30:27
(3 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 12:05:14
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 08:05:07.837745 2026] [security2:error] [pid 8626:tid 8626] [client 130.49.78.98:56889] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||theateroobleck.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "theateroobleck.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeoK8-hYAvigm5_uUWnsUQAAABc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-28 23:35:16
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 28 19:35:10.050986 2026] [security2:error] [pid 18500:tid 18500] [client 130.49.78.98:18985] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||berksoft.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "berksoft.com"] [uri "/wp-json/wp/v2/users"] [unique_id "achlrg_edK6pZp-MKHCiagAAACY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-24 15:27:04
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 11:26:59.632548 2026] [security2:error] [pid 5200:tid 5200] [client 130.49.78.98:23917] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||charleshenri.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "charleshenri.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acKtQ9kmSlLSjowS_b9agAAAAA4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-16 12:53:14
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 130.49.78.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 16 08:53:10.253172 2026] [security2:error] [pid 14048:tid 14048] [client 130.49.78.98:31957] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mmailbox.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mmailbox.com"] [uri "/wp-json/wp/v2/users"] [unique_id "abf9NiMkxFK8O_f9SQKiqwAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-03-14 19:58:02
(5 months ago)
Malicious activity detected
Hacking
Web App Attack