๐บ๐ธ
TPI-Abuse
2026-06-15 15:22:20
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 11:22:13.044809 2026] [security2:error] [pid 21973:tid 21973] [client 193.202.81.191:41835] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pcmec.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pcmec.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ajAYpQnqHfxb4bD7ht8GsgAAAA0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nationaleventpros.com
2026-06-14 19:24:22
(1 week ago)
WordPress login attempt
Brute-Force
๐ช๐ธ
librebit
2026-06-13 07:06:37
(2 weeks ago)
RDWeb scan
Web App Attack
๐ช๐ธ
librebit
2026-06-12 06:21:23
(2 weeks ago)
Brute force
Brute-Force
๐ซ๐ท
dynamix
2026-06-01 21:01:47
(3 weeks ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-01 20:01:13
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 16:01:10.864136 2026] [security2:error] [pid 32285:tid 32285] [client 193.202.81.191:63885] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||clinicacero.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "clinicacero.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ah3lBhnCmgUn40BYCgzH7gAAABI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 19:39:20
(3 weeks ago)
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 15:39:13.387659 2026] [security2:error] [pid 21373:tid 21373] [client 193.202.81.191:49459] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||compmansys.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "compmansys.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahyOYfEgmCGWk_d6MBUYzQAAAAI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-03-26 20:34:00
(3 months ago)
Detected attack and reported by a human
Brute-Force
Web App Attack
SSH
DDoS Attack
Exploited Host
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-26 18:28:13
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.81.191 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 13:28:07.093230 2026] [security2:error] [pid 18201:tid 18201] [client 193.202.81.191:21949] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||plumpen.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "plumpen.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaCQt9T106moMoeEilsdvQAAAAY"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-02-13 12:57:43
(4 months ago)
[redacted] 193.202.81.191 - - [13/Feb/2026:13:57:40 +0100] "GET /administrator HTTP/2.0" 301 293 "ht ...
show more
[redacted] 193.202.81.191 - - [13/Feb/2026:13:57:40 +0100] "GET /administrator HTTP/2.0" 301 293 "https://[redacted]" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36" [redacted] 193.202.81.191 - - [13/Feb/2026:13:57:41 +0100] "GET /fr/administrator/ HTTP/2.0" 404 25676 "https://[redacted]" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
tilellit.pro
2026-01-30 14:11:30
(4 months ago)
Fail2Ban banned 193.202.81.191 for security violations in jail wp-armour. Log: 2026/01/30 14:11:29 [ ...
show more
Fail2Ban banned 193.202.81.191 for security violations in jail wp-armour. Log: 2026/01/30 14:11:29 [error] FastCGI sent in stderr: "PHP message: [WP_ARMOUR_BAN] IP: 193.202.81.191 | Target: wplogin" , client: 193.202.81.191, server: [REDACTED], request: "POST /wp-login.php HTTP/2.0", upstream: [REDACTED], host: [REDACTED], referrer: "https://comerciogallego.es/wp-login.php"
...
show less
Web Spam
Anonymous
2026-01-05 07:31:18
(5 months ago)
wordpress-trap
Web App Attack
๐ณ๐ฑ
exxos
2025-10-11 23:03:01
(8 months ago)
Attacks with Bad user agents
Hacking
Anonymous
2025-10-11 18:28:30
(8 months ago)
Forum/form spam
Web Spam
๐จ๐ฟ
lp
2025-08-01 19:52:06
(10 months ago)
Unauthorized VPN login attempts: 5 attempts were recorded from 193.202.81.191
2025-08-01T20:32:49+02 ...
show more
Unauthorized VPN login attempts: 5 attempts were recorded from 193.202.81.191
2025-08-01T20:32:49+02:00 vpn Access-Reject 'nadams' station: 193.202.81.191 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-08-01T20:43:36+02:00 vpn Access-Reject 'dtorres' station: 193.202.81.191 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-08-01T20:46:46+02:00 vpn Access-Reject 'gyoung' station: 193.202.81.191 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-08-01T20:55:30+02:00 vpn Access-Reject 'eadams' station: 193.202.81.191 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-08-01T21:10:38+02:00 vpn Access-Reject 'ewalker' station: 193.202.81.191 auth-type: - realm: vse.cz nas: <r
show less
Brute-Force
Web App Attack