๐บ๐ฆ
URAN Publishing Service
2026-08-25 00:15:12
(1 day ago)
[25/Aug/2026:03:15:12 +0300] -- 193.203.9.85 Ban reason: User-Agent curl/
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2026-08-18 18:53:20
(1 week ago)
IP banned by Fail2Ban in jail ente-suss ente.com-ssl_log mvfnds
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-14 04:32:31
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 14 00:32:25.550890 2026] [security2:error] [pid 548914:tid 548925] [client 193.203.9.85:57287] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||stonyp.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "stonyp.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ad3DWd6FnXd_73gX36bcwAAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 11:00:26
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 07:00:17.717668 2026] [security2:error] [pid 2678508:tid 2678508] [client 193.203.9.85:38991] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||beckomberga.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "beckomberga.org"] [uri "/wp-json/wp/v2/users"] [unique_id "adY1QVTOIgCb_AJTlkxqLwAAAA4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 01:59:43
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 21:59:35.381668 2026] [security2:error] [pid 15097:tid 15097] [client 193.203.9.85:12345] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||lisagilinger.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "lisagilinger.com"] [uri "/wp-json/wp/v2/users"] [unique_id "acXkhxbLQDKsXlxG6Wv4dQAAAB0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kjaerulff
2026-03-21 15:14:18
(5 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 17:33:17
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 13:33:11.119576 2026] [security2:error] [pid 24201:tid 24201] [client 193.203.9.85:55275] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||naplesdogcenter.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "naplesdogcenter.com"] [uri "/wp-json/wp/v2/users"] [unique_id "abWb1wP6dKsp5r6spQhZXgAAAAk"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 04:32:34
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 03 23:32:31.653352 2025] [security2:error] [pid 22642:tid 22642] [client 193.203.9.85:55581] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||watongalodging.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "watongalodging.com"] [uri "/"] [unique_id "aTEO38qLlRb7WftNOCBVBwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-01 10:36:18
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 05:36:15.348077 2025] [security2:error] [pid 19639:tid 19639] [client 193.203.9.85:22525] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.randyshelly.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.randyshelly.com"] [uri "/"] [unique_id "aS1vn_B8kGf53XiEa96J_gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MM-bot
2025-11-26 19:48:01
(8 months ago)
URL-probe: HTTP/1.1 GET request on /ServerSyncWebService/serversync.asmx (2025-11-26 20:48:01 UTC+1)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-20 02:22:13
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 19 21:21:40.452391 2025] [security2:error] [pid 742272:tid 742272] [client 193.203.9.85:29211] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "engravingbyangela.com"] [uri "/wp-config.php.tmp"] [unique_id "aR57NFq7GcMFPaD5hHR4DgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-12 13:07:58
(9 months ago)
Forum/form spam
Web Spam
Anonymous
2025-10-23 08:25:50
(10 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-10-18 11:18:39
(10 months ago)
(mod_security) mod_security (id:210350) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.203.9.85 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 18 07:18:31.347856 2025] [security2:error] [pid 21645:tid 21645] [client 193.203.9.85:40313] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.caralis.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.caralis.com"] [uri "/"] [unique_id "aPN3h2OrBjOggnto9iBGNQAAABI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-02-16 07:21:49
(1 year ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 193.203.9.85
2025-02-16T06:51:57+01:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 193.203.9.85
2025-02-16T06:51:57+01:00 vpn Access-Reject 'michele' station: 193.203.9.85 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack