Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi ...
show moreSuspicious WooCommerce query combination detected. Not default available on websites. Matched combi patterns: filter_, add-to-cart=, orderby=, product_count=. Activity is consistent with high-volume request abuse.
show less
181.91.85.74 (PY/Paraguay/181.91.85.74.ptr.personal.net.py), 25 distributed imapd attacks on account ...
show more181.91.85.74 (PY/Paraguay/181.91.85.74.ptr.personal.net.py), 25 distributed imapd attacks on account [redacted]
show less
(mod_security) mod_security (id:210730) triggered by 181.91.85.74 (181.91.85.74.ptr.personal.net.py) ...
show more(mod_security) mod_security (id:210730) triggered by 181.91.85.74 (181.91.85.74.ptr.personal.net.py): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 14:33:47.071655 2025] [security2:error] [pid 28623:tid 28623] [client 181.91.85.74:45027] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.vangentholding.com|F|2"] [data ".yolasite.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.vangentholding.com"] [uri "/uncategorized/two-to-be-able-to-learn-korean/cohoiduhoc.yolasite.com"] [unique_id "aSdWG_T8swq1C8SdUHyCCwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
scanning http requests from known botnet
Web App Attack
Anonymous
scanning http requests from known botnet
Web App Attack
Anonymous
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.11.05 is noted in report tim ...
show moreAttempted brute force login to web vpn 1 time(s); last attempt for 2025.11.05 is noted in report timestamp
show less