πΊπΈ
fbarela
2025-11-28 05:00:47
(6 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
πΊπΈ
RDsecadmin
2025-10-24 21:38:05
(7 months ago)
Brute Force RDP
Fraud Orders
Hacking
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-10-20 06:16:41
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 20 02:16:33.125331 2025] [security2:error] [pid 30747:tid 30747] [client 193.233.211.222:33761] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||alsdepot.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "alsdepot.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aPXTweRTL1HUEcTOZ9KKywAAAAE"], referer: https://alsdepot.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-09-06 20:40:37
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 16:40:33.230401 2025] [security2:error] [pid 4193:tid 4193] [client 193.233.211.222:40077] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Detrick/Thumbs.db"] [unique_id "aLycQRzD8Rdgxbv6hhnrZwAAABU"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Detrick/
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
backslash
2025-05-24 01:30:09
(1 year ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
π¦πΊ
oncord
2025-05-02 14:08:34
(1 year ago)
Form spam
Web Spam
Anonymous
2025-04-28 01:38:35
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2025-03-05 09:59:43
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 05 04:59:37.064229 2025] [security2:error] [pid 30377:tid 30377] [client 193.233.211.222:42851] [client 193.233.211.222] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Hansen II/Thumbs.db"] [unique_id "Z8ggiYBa20cGCjNby8aqPgAAAAQ"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Hansen%20II/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2024-12-01 08:57:12
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 193.233.211.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 01 03:57:05.164306 2024] [security2:error] [pid 3731863:tid 3731863] [client 193.233.211.222:10259] [client 193.233.211.222] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Danbury II/Stetson Bordeaux/originals/Thumbs.db"] [unique_id "Z0wk4XdQoLeyFcdr4l58RAAAAAU"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Danbury%20II/Stetson%20Bordeaux/originals/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-10-10 21:15:11
(1 year ago)
Automatic report - Vulnerability scan
/RDWeb/Pages/en-US/login.aspx
Web App Attack
Anonymous
2024-10-04 05:50:09
(1 year ago)
Automatic report - Vulnerability scan
/RDWeb/Pages/en-US/login.aspx
Web App Attack
Anonymous
2024-09-10 12:17:12
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2024-07-11 06:24:01
(1 year ago)
Malicious activity detected
Hacking
Web App Attack
π¨π
backslash
2024-05-23 05:55:02
(2 years ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
π¨π
backslash
2024-04-12 17:20:22
(2 years ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot