๐ซ๐ฎ
bittiguru.fi
2026-07-26 06:41:09
(2 days ago)
194.99.26.216 - [26/Jul/2026:09:40:57 +0300] "POST /xmlrpc.php HTTP/1.1" 404 4704 "-" "Apache-HttpCl ...
show more
194.99.26.216 - [26/Jul/2026:09:40:57 +0300] "POST /xmlrpc.php HTTP/1.1" 404 4704 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)" "4.15"
194.99.26.216 - [26/Jul/2026:09:41:08 +0300] "POST /xmlrpc.php HTTP/1.1" 404 4704 "-" "Apache-HttpClient/4.5.13 (Java/11.0.31)" "4.15"
...
show less
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-17 02:39:35
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 14:29:19
(1 month ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 10:29:14.499817 2026] [security2:error] [pid 3231:tid 3231] [client 194.99.26.216:34919] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mtalame.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mtalame.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ahmiunxJSxIRsm5tLqM6iAAAACI"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 09:01:48
(1 month ago)
(mod_security) mod_security (id:240335) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 05:01:44.016576 2026] [security2:error] [pid 26641:tid 26641] [client 194.99.26.216:29771] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 194.99.26.216 (+1 hits since last alert)|ssion.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "ssion.com"] [uri "/wp-admin/xmlrpc.php"] [unique_id "ahlV-JfyeU9PLfR6tKVjvgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 15:05:04
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 11:04:57.899340 2026] [security2:error] [pid 14782:tid 14782] [client 194.99.26.216:47259] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||wisewerks.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "wisewerks.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afDMmTjiaLI4Bv4QD6M4MgAAAAg"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 03:27:49
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 27 23:27:41.019030 2026] [security2:error] [pid 21079:tid 21079] [client 194.99.26.216:58593] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gp-cm.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gp-cm.com"] [uri "/wp-json/wp/v2/users"] [unique_id "afApLfrRcTxHCpthUZxxtQAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-24 23:38:39
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 19:38:32.155757 2026] [security2:error] [pid 12091:tid 12091] [client 194.99.26.216:46545] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||scothart.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "scothart.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aev--MNrDgXA306YTATxmwAAAAQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-14 00:01:03
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 20:00:55.330250 2026] [security2:error] [pid 1767128:tid 1767128] [client 194.99.26.216:14779] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||pyxelstudios.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "pyxelstudios.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ad2Dty9yPUaxZm4j7fETXgAAAAM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-11 08:16:24
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 11 04:16:20.281900 2026] [security2:error] [pid 1042731:tid 1042731] [client 194.99.26.216:49353] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||berklie.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "berklie.com"] [uri "/wp-json/wp/v2/users"] [unique_id "adoDVEoPc9d-EOiscV0Y3gAAAAA"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 22:56:42
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 18:56:37.490512 2026] [security2:error] [pid 27340:tid 27340] [client 194.99.26.216:23637] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||talkingmess.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "talkingmess.com"] [uri "/wp-json/wp/v2/users"] [unique_id "ac70JQ-Xkegv9BZtihWC8QAAAA4"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 18:55:48
(3 months ago)
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 194.99.26.216 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 14:55:39.426516 2026] [security2:error] [pid 28392:tid 28392] [client 194.99.26.216:32561] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mcbrearty.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mcbrearty.org"] [uri "/wp-json/wp/v2/users"] [unique_id "acl1q5l5_4l4Yvj14zdXIgAAACQ"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-19 16:11:20
(4 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
๐บ๐ธ
www.winos.me
2026-02-24 12:19:09
(5 months ago)
Banned due to high error rate on HTTP/1.1 protocol
Brute-Force
Web App Attack
๐ฑ๐ป
garmtech.com
2025-10-24 10:41:59
(9 months ago)
IM360 WAF: SQL Injection Attack: Common DB Names Detected
SQL Injection
๐จ๐ฟ
lp
2025-08-13 19:51:27
(11 months ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 194.99.26.216
2025-08-13T20:52:53+02: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 194.99.26.216
2025-08-13T20:52:53+02:00 vpn Access-Reject 'ahall' station: 194.99.26.216 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack