๐ซ๐ท
tilellit.pro
2026-05-09 09:25:34
(1 month ago)
Fail2Ban banned 185.94.34.114 for security violations in jail wp-armour. Log: 2026/05/09 09:25:34 [e ...
show more
Fail2Ban banned 185.94.34.114 for security violations in jail wp-armour. Log: 2026/05/09 09:25:34 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 185.94.34.114 | Target: wplogin" , client: 185.94.34.114, server: [REDACTED], request: "POST /wp-login.php HTTP/1.1", upstream: [REDACTED], host: [REDACTED]
...
show less
Web Spam
๐บ๐ธ
TPI-Abuse
2026-02-18 04:51:47
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 17 23:51:42.347767 2026] [security2:error] [pid 817005:tid 817005] [client 185.94.34.114:63629] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||techlinks.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "techlinks.com"] [uri "/"] [unique_id "aZVFXpVVpvJptCH_LtmKYQAAAAQ"], referer: https://www.facebook.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-06 07:07:55
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 06 02:07:50.073625 2025] [security2:error] [pid 25875:tid 25875] [client 185.94.34.114:60583] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||corepest.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "corepest.com"] [uri "/"] [unique_id "aTPWRnj1X_VPkpHxGRqQ-QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-10-09 20:41:26
(8 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ณ๐ฑ
exxos
2025-09-10 01:03:01
(9 months ago)
HTTP1.x attacks
DDoS Attack
Anonymous
2025-08-16 22:46:45
(9 months ago)
WordPress Brute Force
Brute-Force
๐จ๐ญ
backslash
2025-07-04 03:54:04
(11 months ago)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-05-06 05:24:58
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 01:24:55.740412 2025] [security2:error] [pid 623446:tid 623446] [client 185.94.34.114:9657] [client 185.94.34.114] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Danbury II/Danbury II/Stetson Coffee/originals/Thumbs.db"] [unique_id "aBmdJ4vLG05JxGDmNnNYmgAAAA4"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Danbury%20II/Danbury%20II/Stetson%20Coffee/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
sms.ru
2024-09-27 21:05:05
(1 year ago)
SMS pumping attack from foreign country
DDoS Attack
๐จ๐ฆ
wil.com
2024-09-24 03:10:11
(1 year ago)
GlobalProtect login attempts with user ldold.
VPN IP
Brute-Force
๐ต๐ฑ
sefinek.net
2024-08-30 11:55:59
(1 year ago)
This IP address has been identified as generating artificial traffic on websites following the purch ...
show more
This IP address has been identified as generating artificial traffic on websites following the purchase of a specific service from a Fiverr gig. User-Agent and Referrer: Mozilla/5.0 (iPhone; CPU iPhone OS 15_7_2 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/116.0.5845.62 Mobile/15E148 Safari/604.1 - -
show less
Bad Web Bot
๐ต๐ฑ
sefinek.net
2024-08-30 11:55:59
(1 year ago)
This IP address has been identified as generating artificial traffic on websites following the purch ...
show more
This IP address has been identified as generating artificial traffic on websites following the purchase of a specific service from a Fiverr gig. User-Agent and Referrer: Mozilla/5.0 (iPhone; CPU iPhone OS 15_7_2 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) CriOS/116.0.5845.62 Mobile/15E148 Safari/604.1 - -
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2024-08-07 16:43:50
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 185.94.34.114 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 07 12:43:44.315788 2024] [security2:error] [pid 25043:tid 25043] [client 185.94.34.114:14171] [client 185.94.34.114] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Laurel/Thumbs.db"] [unique_id "ZrOkQGc-Je4qGc2YkIqjegAAADA"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Laurel/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2024-05-15 15:30:07
(2 years ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐จ๐ญ
backslash
2024-04-11 07:19:30
(2 years ago)
honeypot
Bad Web Bot