π¦πΊ
MAGIC
2026-06-05 02:17:35
(2 weeks ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
π©πͺ
LRob.fr
2026-05-31 12:45:05
(3 weeks ago)
Repeated requests on blocked xmlrpc.php, blocked by fail2ban in custom-503-xmlrpc jail
Bad Web Bot
Web App Attack
Anonymous
2026-05-10 20:11:40
(1 month ago)
Forum/form spam
Web Spam
πΊπΈ
TPI-Abuse
2026-04-28 20:00:13
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 194.110.150.14 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 194.110.150.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 16:00:07.151472 2026] [security2:error] [pid 27540:tid 27540] [client 194.110.150.14:17557] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mikedeutsch.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mikedeutsch.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afERxw0yJnaZhP8T4r-N6gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-23 21:54:01
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 194.110.150.14 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 194.110.150.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 17:53:56.799627 2026] [security2:error] [pid 16156:tid 16156] [client 194.110.150.14:55669] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||richmondrents.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "richmondrents.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aeqU9HMwT7eJyqN1Lk0IcwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Kimax
2026-02-27 11:19:01
(3 months ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
Anonymous
2025-03-20 09:00:45
(1 year ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.03.20 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.03.20 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-03-20 09:00:45
(1 year ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.03.20 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.03.20 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-01-19 17:16:29
(1 year ago)
sql injection
Web App Attack
πΊπΈ
TPI-Abuse
2024-12-04 06:30:29
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 194.110.150.14 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 194.110.150.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 04 01:30:21.845895 2024] [security2:error] [pid 3597169:tid 3597169] [client 194.110.150.14:9911] [client 194.110.150.14] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hl-re.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hl-re.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z0_2_Zj9DGtdaXhUtD2N4gAAACI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
wil.com
2024-09-23 12:34:27
(1 year ago)
GlobalProtect login attempts with user jrobinson.
VPN IP
Brute-Force
Anonymous
2024-05-19 05:05:29
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
π¬π§
Swiptly
2024-05-12 01:12:59
(2 years ago)
WordPress xmlrpc spam or enumeration
...
Web Spam
Bad Web Bot
Web App Attack
πΉπΌ
kk_it_man
2022-09-27 22:10:19
(3 years ago)
hack
Hacking
πΉπΌ
kk_it_man
2022-09-27 21:30:09
(3 years ago)
Hacking