๐จ๐ฆ
zXero
2026-06-09 12:55:31
(2 days ago)
Fail2Ban automatic report - jail: no-wordpress
Brute-Force
SSH
DDoS Attack
๐จ๐ฆ
zXero
2026-06-03 12:31:51
(1 week ago)
Fail2Ban automatic report - jail: no-wordpress
Brute-Force
SSH
DDoS Attack
๐จ๐ฆ
zXero
2026-05-29 12:26:11
(1 week ago)
Fail2Ban automatic report - jail: no-wordpress
Brute-Force
SSH
DDoS Attack
๐จ๐ญ
backslash
2026-05-23 09:57:00
(2 weeks ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐จ๐ฆ
zXero
2026-05-21 21:33:55
(3 weeks ago)
Fail2Ban automatic report - jail: no-wordpress
Brute-Force
SSH
DDoS Attack
๐ฌ๐ง
Oakley
2026-05-14 16:09:12
(4 weeks ago)
(mod_security) mod_security (id:900178) triggered by 193.56.20.92 (US/United States/-): 5 in the las ...
show more
(mod_security) mod_security (id:900178) triggered by 193.56.20.92 (US/United States/-): 5 in the last 900 secs
show less
Web App Attack
Hacking
๐ฎ๐ฉ
Kencang.ID
2026-02-24 15:03:33
(3 months ago)
Failed Login Attempt 2026-02-24 15:03:33 | 193.56.20.92 | Desktop | Unknown | Seattle, Washington, U ...
show more
Failed Login Attempt 2026-02-24 15:03:33 | 193.56.20.92 | Desktop | Unknown | Seattle, Washington, United States | PureVoltage Hosting Inc. | Wget/1.21.4
show less
Brute-Force
FTP Brute-Force
๐บ๐ธ
TPI-Abuse
2026-02-06 17:39:36
(4 months ago)
(mod_security) mod_security (id:225170) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 06 12:39:32.516587 2026] [security2:error] [pid 23074:tid 23074] [client 193.56.20.92:40459] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||sahinozalit.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "sahinozalit.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aYYnVEsOThNcGWeuazy_DwAAAAc"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-01-30 14:07:27
(4 months ago)
[redacted] 193.56.20.92 - - [30/Jan/2026:15:07:22 +0100] "GET /[redacted] HTTP/1.1" 302 1587 0/34263 ...
show more
[redacted] 193.56.20.92 - - [30/Jan/2026:15:07:22 +0100] "GET /[redacted] HTTP/1.1" 302 1587 0/34263 "https://[redacted]" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36" [redacted] 193.56.20.92 - - [30/Jan/2026:15:07:25 +0100] "GET /[redacted] HTTP/1.1" 302 1587 0/37742 "https://[redacted]" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2026-01-24 00:28:48
(4 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User A ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User Agent: N/A - Timestamp: 1/24/2026 12:28 am (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-26 06:46:46
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Dec 26 01:46:38.632290 2025] [security2:error] [pid 30287:tid 30358] [client 193.56.20.92:13859] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||honeyled.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "honeyled.com"] [uri "/"] [unique_id "aU4vTknyCwTOiZRAwAndOgAAAI4"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-11-29 00:43:18
(6 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-11-20 18:03:31
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 20 13:03:28.173761 2025] [security2:error] [pid 32630:tid 32630] [client 193.56.20.92:62337] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.addocc.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.addocc.com"] [uri "/"] [unique_id "aR9X8HiLtWHoXV4dRsgNwAAAACE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-24 01:10:21
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 193.56.20.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 23 21:10:15.372605 2025] [security2:error] [pid 3986:tid 3986] [client 193.56.20.92:34567] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||jolankagroup.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "jolankagroup.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aPrR91vhkTzOvezCWVy_0QAAAAQ"], referer: https://jolankagroup.com/wp-json/wp/v2/users/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2025-08-13 17:35:09
(9 months ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot