🇨🇿
lp
2026-09-11 06:22:33
(16 hours ago)
Unauthorized VPN login attempts: 2 attempts were recorded from 194.99.25.244
2026-09-11T07:22:32+02: ...
show more
Unauthorized VPN login attempts: 2 attempts were recorded from 194.99.25.244
2026-09-11T07:22:32+02:00 vpn Access-Reject 'masterpc' station: 194.99.25.244 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-11T07:23:59+02:00 vpn Access-Reject 'matawee-h' station: 194.99.25.244 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇨🇿
lp
2026-09-10 07:51:25
(1 day ago)
Unauthorized VPN login attempts: 8 attempts were recorded from 194.99.25.244
2026-09-10T09:34:32+02: ...
show more
Unauthorized VPN login attempts: 8 attempts were recorded from 194.99.25.244
2026-09-10T09:34:32+02:00 vpn Access-Reject 'iozbolat' station: 194.99.25.244 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-10T09:35:52+02:00 vpn Access-Reject 'ipacom' station: 194.99.25.244 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-10T09:37:12+02:00 vpn Access-Reject 'ipad' station: 194.99.25.244 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-10T09:38:33+02:00 vpn Access-Reject 'ipafood' station: 194.99.25.244 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-10T09:39:53+02:00 vpn Access-Reject 'ipalc' station: 194.99.25.244 auth-type: - realm: vse.cz nas: <redacted>
show less
Brute-Force
Web App Attack
🇦🇺
oncord
2026-09-09 18:26:30
(2 days ago)
Form spam
Web Spam
🇸🇪
OnTheEdge
2026-09-09 00:53:11
(2 days ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
🇺🇸
ThreatsIntelz
2026-08-27 22:15:54
(2 weeks ago)
SSL-VPN brute-force / password-guessing attempts against FortiGate SSLVPN. Observed source subnet 19 ...
show more
SSL-VPN brute-force / password-guessing attempts against FortiGate SSLVPN. Observed source subnet 194.99.25.0/24 (owner: FINEGROUPSERVERS-LEASE); 2 attempts above threshold.
show less
Brute-Force
SSH
🇨🇦
DRI
2026-08-24 22:50:25
(2 weeks ago)
Web attack/Malicious activity detected
Web App Attack
🇮🇩
penjaga BRIN
2026-04-16 10:21:29
(4 months ago)
SQL injection attempt
SQL Injection
🇺🇸
TPI-Abuse
2025-09-07 03:25:05
(1 year ago)
(mod_security) mod_security (id:210350) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 23:25:00.063194 2025] [security2:error] [pid 15530:tid 15530] [client 194.99.25.244:40963] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||vaerobics.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "vaerobics.com"] [uri "/"] [unique_id "aLz7DOdv6VShbi5yqQEAvwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-09-06 22:01:05
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 18:01:01.639900 2025] [security2:error] [pid 438:tid 438] [client 194.99.25.244:15557] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Golden-Technologies/pics/Golden Technologies 2009 Marketing CD/Luxury Beds/Deluxe Bed 4101/Thumbs.db"] [unique_id "aLyvHSWwhvtP7Z_Zc2C3QwAAAAQ"], referer: https://vitalitywebb.com/backstore/Golden-Technologies/pics/Golden%20Technologies%202009%20Marketing%20CD/Luxury%20Beds/Deluxe%20Bed%204101/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
backslash
2025-05-10 04:56:42
(1 year ago)
Bad Web Bot
🇺🇸
TPI-Abuse
2025-05-06 05:21:41
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 06 01:21:31.784623 2025] [security2:error] [pid 623799:tid 623799] [client 194.99.25.244:59665] [client 194.99.25.244] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Ashton II Recliner/Havana Brown/Thumbs.db"] [unique_id "aBmcWzwtynhw-B02URVRSgAAABM"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Ashton%20II%20Recliner/Havana%20Brown/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-12-21 08:53:02
(1 year ago)
Attempted brute force login to web vpn
Hacking
Brute-Force
Anonymous
2024-12-19 14:30:28
(1 year ago)
Attempted brute force login to web vpn
Hacking
Brute-Force
Anonymous
2024-12-17 05:58:21
(1 year ago)
Attempted brute force login to web vpn
Hacking
Brute-Force
🇺🇸
TPI-Abuse
2024-08-07 18:14:58
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 194.99.25.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 07 14:14:46.393625 2024] [security2:error] [pid 29161:tid 29161] [client 194.99.25.244:12529] [client 194.99.25.244] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Golden-Technologies/pics/Golden Technologies 2009 Marketing CD/Lift Chairs/Comforter Series/Thumbs.db"] [unique_id "ZrO5lqnCrppkGIzvIDyAswAAABw"], referer: https://vitalitywebb.com/backstore/Golden-Technologies/pics/Golden%20Technologies%202009%20Marketing%20CD/Lift%20Chairs/Comforter%20Series/
show less
Brute-Force
Bad Web Bot
Web App Attack