๐บ๐ธ
TPI-Abuse
2026-06-12 11:09:53
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 31.134.13.177 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 31.134.13.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 07:09:49.193442 2026] [security2:error] [pid 29953:tid 29953] [client 31.134.13.177:62097] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||mmaccaux.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "mmaccaux.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aivo_ej-kM6jlJ70Cq9j-wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 02:29:55
(1 week ago)
(mod_security) mod_security (id:225170) triggered by 31.134.13.177 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 31.134.13.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 22:29:49.978238 2026] [security2:error] [pid 9166:tid 9166] [client 31.134.13.177:37697] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||ezsmiledental.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "ezsmiledental.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiodnaa_cyRQ9Tg7mtILyQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-08 02:29:44
(1 week ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 05-29.31.134.13.177.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 05-29.31.134.13.177.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐จ๐ญ
backslash
2026-06-04 14:30:06
(2 weeks ago)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-03 05:01:09
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 31.134.13.177 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 31.134.13.177 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 01:01:06.507598 2026] [security2:error] [pid 23297:tid 23297] [client 31.134.13.177:36661] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||vitalitywebb.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "vitalitywebb.com"] [uri "/backstore/Barcalounger/Images/Detrick/Thumbs.db"] [unique_id "ah-1EnwP7LzbSPDkn1Zf3AAAACQ"], referer: https://vitalitywebb.com/backstore/Barcalounger/Images/Detrick/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
HandyTreff.de
2026-05-21 15:09:39
(4 weeks ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -51.108 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -51.108 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.4150.1
show less
Web App Attack
Bad Web Bot
๐ซ๐ท
tecnicorioja
2026-05-06 22:00:51
(1 month ago)
wp-login attack [06/May/2026:17:09:18
Brute-Force
Web App Attack
๐จ๐ญ
backslash
2026-04-18 01:03:12
(2 months ago)
block ruleset 798ECF92F12ADC636D3520C2890AF17ADEFDE3BE
Bad Web Bot
๐ฉ๐ช
LRob.fr
2026-04-12 04:45:03
(2 months ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
Anonymous
2025-07-07 16:00:00
(11 months ago)
Message meets Alert condition
The following critical firewall event was detected: SSL VPN login fai ...
show more
Message meets Alert condition
The following critical firewall event was detected: SSL VPN login fail.
date=2025-07-07 time=10:30:17 devname=FortiGate-200F devid=FG200FT922906136 eventtime=1751902217176785649 tz="-0500" logid="0101039426" type="event" subtype="vpn" level="alert" vd="root" logdesc="SSL VPN login fail" action="ssl-login-fail" tunneltype="ssl-web" tunnelid=0 remip=31.134.13.177 srccountry="United States" user="testuser1" group="N/A" dst_host="N/A" reason="sslvpn_login_unknown_user" msg="SSL user failed to logged in"
show less
VPN IP