AbuseIPDB » 193.233.220.96
193.233.220.96 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 0% : ?
ISP
AEZA GROUP LLC
Usage Type
Data Center/Web Hosting/Transit
ASN
AS216246
Domain Name
aeza.ru
Country
π·πΊ
Russian Federation
City
Saint Petersburg, St.-Petersburg
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 193.233.220.96 :
This IP address has been reported a total of
7
times from
5 distinct
sources.
193.233.220.96 was first reported on
June 16th 2025 , and the most recent report was
3 months ago .
Old Reports:
The most recent abuse report for this IP address is from
3 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π©πͺ
ps-center
2026-03-07 16:34:39
(3 months ago)
C1: Brutforce ssh Login
Brute-Force
π¨πΏ
lp
2025-12-04 16:22:16
(6 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 193.233.220.96
2025-12-04T17:15:11+01 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 193.233.220.96
2025-12-04T17:15:11+01:00 vpn Access-Reject 'user2' station: 193.233.220.96 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
π¨πΏ
lp
2025-12-01 10:25:58
(6 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 193.233.220.96
2025-12-01T09:54:00+01 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 193.233.220.96
2025-12-01T09:54:00+01:00 vpn Access-Reject 'mingli' station: 193.233.220.96 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
π¨πΏ
lp
2025-12-01 02:51:46
(6 months ago)
Unauthorized VPN login attempts: 2 attempts were recorded from 193.233.220.96
2025-11-30T18:01:50+01 ...
show more
Unauthorized VPN login attempts: 2 attempts were recorded from 193.233.220.96
2025-11-30T18:01:50+01:00 vpn Access-Reject 'khalili' station: 193.233.220.96 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2025-12-01T03:26:21+01:00 vpn Access-Reject 'margit' station: 193.233.220.96 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
π©πͺ
stinpriza
2025-11-18 16:12:51
(7 months ago)
Web App Attack
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-12 06:11:50
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 193.233.220.96 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 193.233.220.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 12 01:11:44.086098 2025] [security2:error] [pid 824:tid 824] [client 193.233.220.96:36343] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.veneerdent.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.veneerdent.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aRQlIMR-Bl03YPF-MfrxuwAAABM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-06-16 12:03:00
(1 year ago)
Message meets Alert condition
The following critical firewall event was detected: SSL VPN login fai ...
show more
Message meets Alert condition
The following critical firewall event was detected: SSL VPN login fail.
date=2025-06-14 time=09:08:10 devname=FortiGate-200F devid=FG200FT922906136 eventtime=1749910090061935096 tz="-0500" logid="0101039426" type="event" subtype="vpn" level="alert" vd="root" logdesc="SSL VPN login fail" action="ssl-login-fail" tunneltype="ssl-web" tunnelid=0 remip=193.233.220.96 srccountry="United States" user="jscott" group="N/A" dst_host="N/A" reason="sslvpn_login_unknown_user" msg="SSL user failed to logged in"
show less
VPN IP
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: