🇨🇿
lp
2026-09-12 09:23:30
(19 hours ago)
Unauthorized VPN login attempts: 2 attempts were recorded from 83.142.52.178
2026-09-12T09:56:49+02: ...
show more
Unauthorized VPN login attempts: 2 attempts were recorded from 83.142.52.178
2026-09-12T09:56:49+02:00 vpn Access-Reject 'THoang' station: 83.142.52.178 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-12T09:58:16+02:00 vpn Access-Reject 'ahuynh' station: 83.142.52.178 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇨🇿
lp
2026-09-10 06:23:11
(2 days ago)
Unauthorized VPN login attempts: 1 attempts were recorded from 83.142.52.178
2026-09-10T06:53:44+02: ...
show more
Unauthorized VPN login attempts: 1 attempts were recorded from 83.142.52.178
2026-09-10T06:53:44+02:00 vpn Access-Reject 'it1' station: 83.142.52.178 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
🇸🇪
OnTheEdge
2026-09-08 09:38:35
(4 days ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
Anonymous
2026-08-02 05:34:10
(1 month ago)
Aggressive web scan
Web App Attack
🇩🇪
kjaerulff
2026-04-13 00:56:21
(5 months ago)
Failed Wordpress login using wp-login.php
Web App Attack
🇺🇸
TPI-Abuse
2026-04-10 21:00:54
(5 months ago)
(mod_security) mod_security (id:225170) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 17:00:48.455556 2026] [security2:error] [pid 3500333:tid 3500333] [client 83.142.52.178:64721] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||gbaker.us|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "gbaker.us"] [uri "/wp-json/wp/v2/users"] [unique_id "adllAKM3P4qqwxuJm_i_uQAAABM"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-01-22 14:37:34
(7 months ago)
(mod_security) mod_security (id:225170) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 22 09:37:30.810183 2026] [security2:error] [pid 21714:tid 21714] [client 83.142.52.178:38451] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||doctoredwinalvarez.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "doctoredwinalvarez.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aXI2Kgm2nKU8nEZw_5IjYwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-01 13:56:39
(8 months ago)
Forum/form spam
Web Spam
🇮🇩
Burayot
2025-12-18 17:10:24
(8 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 83.142.52.178 (IL/Israel/-): 1 in t ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 83.142.52.178 (IL/Israel/-): 1 in the last 3600 secs
show less
Web App Attack
Anonymous
2025-11-28 11:41:23
(9 months ago)
Forum/form spam
Web Spam
🇺🇸
TPI-Abuse
2025-11-15 17:50:54
(9 months ago)
(mod_security) mod_security (id:210350) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 15 12:50:48.268218 2025] [security2:error] [pid 21029:tid 21029] [client 83.142.52.178:55931] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dunningtons.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dunningtons.com"] [uri "/"] [unique_id "aRi9eLWxjSXI2e96vkYmaAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-15 16:47:14
(9 months ago)
(mod_security) mod_security (id:210350) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 83.142.52.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 15 11:47:10.749872 2025] [security2:error] [pid 5106:tid 5106] [client 83.142.52.178:20189] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||btsalesrep.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "btsalesrep.com"] [uri "/"] [unique_id "aRiujkhJ2ayzTwwJUdPXowAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-19 22:06:54
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇺🇸
Yawning Angel
2024-08-27 21:35:09
(2 years ago)
logdesc=SSL VPN login fail user=caritta remip=83.142.52.178 reason=sslvpn_login_permission_denied
Hacking
Brute-Force
🇺🇸
Yawning Angel
2024-08-10 17:15:26
(2 years ago)
logdesc=SSL VPN login fail user=annabal remip=83.142.52.178 reason=sslvpn_login_permission_denied
Hacking
Brute-Force