πΊπΈ
TPI-Abuse
2026-04-11 05:31:47
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 193.202.9.35 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.9.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 01:31:42.116536 2026] [security2:error] [pid 2840788:tid 2840788] [client 193.202.9.35:17861] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||exners.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "exners.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adncvpC5bY9dpsyz8UoIXAAAAAE"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-07 21:34:26
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 193.202.9.35 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.9.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 17:34:20.212804 2026] [security2:error] [pid 1684937:tid 1684937] [client 193.202.9.35:46541] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||iconconstructors.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "iconconstructors.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adV4XGX8qbmLQuN6WbeIcgAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 09:52:14
(2 months ago)
(mod_security) mod_security (id:225170) triggered by 193.202.9.35 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.202.9.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 05:52:10.376493 2026] [security2:error] [pid 25728:tid 25728] [client 193.202.9.35:17471] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||artattackgraphics.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "artattackgraphics.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ac-NykUBVgsFTwgpunHttgAAAAo"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΉ
RenΓ© Hickersberger
2026-01-30 16:33:55
(4 months ago)
[2026-01-30T16:33:55Z] Malicious request to /wp-login.php
Hacking
Bad Web Bot
Web App Attack
π©πͺ
ps-center
2026-01-30 08:01:23
(4 months ago)
C1: Web Attack GET /wp-login.php
Web Spam
Hacking
Bad Web Bot
Web App Attack
π¨πΏ
lp
2025-03-18 17:52:42
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.9.35
2025-03-18T18:43:22+01:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.9.35
2025-03-18T18:43:22+01:00 vpn Access-Reject 'Administrator' station: 193.202.9.35 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
π¨πΏ
lp
2025-03-13 14:53:05
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.9.35
2025-03-13T15:17:23+01:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.9.35
2025-03-13T15:17:23+01:00 vpn Access-Reject 'zane' station: 193.202.9.35 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
πΈπͺ
OnTheEdge
2025-02-04 09:53:25
(1 year ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
πΈπͺ
OnTheEdge
2025-02-03 11:07:48
(1 year ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
πΈπͺ
OnTheEdge
2025-01-31 11:20:22
(1 year ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
π¨πΏ
lp
2024-11-06 07:26:53
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.9.35
2024-11-06T07:27:21+01:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 193.202.9.35
2024-11-06T07:27:21+01:00 vpn Access-Reject 'amd' station: 193.202.9.35 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
πΊπΈ
fortypoundhead
2021-01-25 12:48:32
(5 years ago)
Gatekeeper - SQL injection attempt
SQL Injection