๐ฌ๐ง
venus.launch.bz
2026-10-03 06:42:11
(5 days ago)
(wpscan) WordPress probe detected from 193.202.16.81 (US/United States/-)
Hacking
๐จ๐ฟ
Countryman
2026-09-16 00:10:02
(3 weeks ago)
repeated unauthorized VPN login attempt, user sweep
VPN IP
Hacking
Brute-Force
๐จ๐ฟ
lp
2026-09-10 00:22:35
(4 weeks ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.16.81
2026-09-10T00:59:29+02: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.16.81
2026-09-10T00:59:29+02:00 vpn Access-Reject 'sedat.cetin' station: 193.202.16.81 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-09 18:31:16
(4 weeks ago)
(mod_security) mod_security (id:210350) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 14:31:07.380749 2026] [security2:error] [pid 31935:tid 31935] [client 193.202.16.81:27367] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.jerusalem-korczak-home.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.jerusalem-korczak-home.com"] [uri "/potter/78/h89.html"] [unique_id "aqGl6zS-aEnb4LTIRXznYgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-01 00:41:07
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 30 20:40:59.905539 2026] [security2:error] [pid 4000:tid 4000] [client 193.202.16.81:60027] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||casapapayasanmiguel.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "casapapayasanmiguel.com"] [uri "/wp-json/wp/v2/users"] [unique_id "akRiG3PCOlOxX1KDiDtWwgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-29 19:50:22
(4 months ago)
Forum/form spam
Web Spam
๐ฆ๐บ
Anytech
2026-03-31 17:07:19
(6 months ago)
Blocked by Conn-Monitor: Automated bot activity
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 11:35:11
(6 months ago)
(mod_security) mod_security (id:225170) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 07:35:03.013452 2026] [security2:error] [pid 10473:tid 10473] [client 193.202.16.81:23721] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||eastbrooktech.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "eastbrooktech.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acZrZvofUMJ9ZF1MsLsDxgAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 10:10:41
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 193.202.16.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 06:10:37.556101 2026] [security2:error] [pid 5347:tid 5347] [client 193.202.16.81:47457] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Detrick/Thumbs.db"] [unique_id "abU0HRmiJYltmTDS458mzgAAACY"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Detrick/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-27 09:58:35
(7 months ago)
Forum/form spam
Web Spam
๐จ๐ญ
backslash
2026-02-10 02:50:05
(7 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐จ๐ญ
backslash
2026-01-02 11:25:05
(9 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
Anonymous
2025-12-28 15:56:41
(9 months ago)
Forum/form spam
Web Spam
๐บ๐ธ
webgobe
2025-12-21 09:09:00
(9 months ago)
jow-Joomla User : try to access forms...
Hacking
๐บ๐ฟ
crywaxwiz
2025-12-02 17:29:00
(10 months ago)
form spam
Web Spam