Anonymous
2026-06-06 06:05:52
(10 hours ago)
194.99.25.92 - - [06/Jun/2026:06:05:51 +0000] "GET /.env_1 HTTP/1.1" 404 44508 "-" "Mozilla/5.0 (Win ...
show more
194.99.25.92 - - [06/Jun/2026:06:05:51 +0000] "GET /.env_1 HTTP/1.1" 404 44508 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-12 19:04:38
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 12 15:04:30.761622 2026] [security2:error] [pid 2660086:tid 2660101] [client 194.99.25.92:64663] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||inal.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "inal.org"] [uri "/wp-json/wp/v2/users"] [unique_id "advsvgnkBKO3zE-7WwTXoAAAAIw"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2026-03-05 23:14:29
(3 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User A ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-json/wp/v2/users - User Agent: N/A - Timestamp: 3/5/2026 11:14 pm (UTC-6)
show less
Web App Attack
Bad Web Bot
Web Spam
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-28 07:09:44
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 28 02:09:36.655586 2026] [security2:error] [pid 900:tid 900] [client 194.99.25.92:58035] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||uphillfarmvt.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "uphillfarmvt.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaKUsCG1L4MDL8FUkq3XZwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-26 23:33:13
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 18:33:10.495126 2026] [security2:error] [pid 30026:tid 30042] [client 194.99.25.92:35045] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||justaposephotography.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "justaposephotography.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aaDYNuwBNYLYi3s9CM31CQAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-23 20:34:44
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 23 15:34:36.867211 2026] [security2:error] [pid 30944:tid 30944] [client 194.99.25.92:62681] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||abundancecompany.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "abundancecompany.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZy53PcY_F29_IENUVXaFwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-21 03:06:44
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 20 22:06:41.151282 2026] [security2:error] [pid 31829:tid 31902] [client 194.99.25.92:19739] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||annacaird.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "annacaird.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aZkhQYvdPlIvdysYnFhdOwAAAYM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
EchoGuard
2026-02-14 18:00:03
(3 months ago)
FortiGate SSL VPN login failures
VPN IP
Brute-Force
๐บ๐ธ
fbarela
2026-02-12 22:00:19
(3 months ago)
FortiGate SSL VPN login failures.
Hacking
Brute-Force
๐ฑ๐ป
garmtech.com
2025-12-22 01:22:38
(5 months ago)
IM360 WAF: Attempt to upload malware
Hacking
๐ฑ๐ป
garmtech.com
2025-12-20 00:39:32
(5 months ago)
IM360 WAF: Attempt to upload malware
Hacking
Anonymous
2025-10-23 23:54:02
(7 months ago)
Malicious activity detected
Hacking
Web App Attack
๐จ๐ฟ
lp
2025-09-10 10:55:04
(8 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 194.99.25.92
2025-09-10T11:27:21+02:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 194.99.25.92
2025-09-10T11:27:21+02:00 vpn Access-Reject 'reception' station: 194.99.25.92 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-06 17:47:12
(8 months ago)
(mod_security) mod_security (id:210730) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 194.99.25.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 13:47:03.932183 2025] [security2:error] [pid 27896:tid 27896] [client 194.99.25.92:13907] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/HumanTouch/pics/Thumbs.db"] [unique_id "aLxzl8190fWHX6TI82F_kAAAAAE"], referer: https://vitalitywebb.com/backstore/HumanTouch/pics/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
lp
2025-08-27 21:24:34
(9 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 194.99.25.92
2025-08-27T22:59:02+02:0 ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 194.99.25.92
2025-08-27T22:59:02+02:00 vpn Access-Reject 'marleen' station: 194.99.25.92 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack