🇸🇮
administrator
2026-09-11 22:57:31
(1 day ago)
2026-09-06 00:21:44,970 fail2ban.actions [1054]: NOTICE [apache-fakegooglebot] Ban 102.165.0 ...
show more
2026-09-06 00:21:44,970 fail2ban.actions [1054]: NOTICE [apache-fakegooglebot] Ban 102.165.0.222
2026-09-06 00:21:44,970 fail2ban.actions [1054]: NOTICE [apache-fakegooglebot] Ban 102.165.0.222
2026-09-06 00:21:44,970 fail2ban.actions [1054]: NOTICE [apache-fakegooglebot] Ban 102.165.0.222
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-13 17:01:11
(4 weeks ago)
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 13:01:02.023687 2026] [security2:error] [pid 29425:tid 29425] [client 102.165.0.222:62829] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||hanabritgermanshepherds.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "hanabritgermanshepherds.com"] [uri "/"] [unique_id "an34TuYgg7k97T-tBvsAXgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-13 09:52:28
(4 weeks ago)
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 05:52:20.953729 2026] [security2:error] [pid 4879:tid 4879] [client 102.165.0.222:49599] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||acmax.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "acmax.com"] [uri "/home/"] [unique_id "an2T1I2lujQH_GpeYEU-ggAAAAw"], referer: http://acmax.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-12 23:47:58
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 19:47:51.425629 2026] [security2:error] [pid 2381701:tid 2381701] [client 102.165.0.222:48123] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||etudesoftware.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "etudesoftware.com"] [uri "/"] [unique_id "an0GJ6PYGginQBuhR6BF0gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-08-10 07:46:03
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 247
Exploited Host
Web App Attack
🇩🇪
FeG Deutschland
2026-08-08 15:49:52
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 247
Exploited Host
Web App Attack
Anonymous
2026-07-31 23:44:02
(1 month ago)
Attempted search for exploits and vulnerabilities detected by fail2ban
...
Port Scan
Brute-Force
🇺🇸
TPI-Abuse
2026-07-21 21:47:13
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 102.165.0.222 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 17:47:04.669864 2026] [security2:error] [pid 471801:tid 471801] [client 102.165.0.222:51075] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||videoverse.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "videoverse.com"] [uri "/@videoverse"] [unique_id "al_o2ECfH32OsqEm8mAFrgAAAAU"], referer: https://videoverse.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇱🇻
garmtech.com
2026-06-10 15:40:47
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 18-40.102.165.0.222.web-spamme ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 18-40.102.165.0.222.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
🇺🇸
ipblock.com
2026-06-01 14:13:00
(3 months ago)
IPBlock protected site ID [4055-d][s=02].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-05-31 05:55:00
(3 months ago)
IPBlock protected site ID [4055-d][s=02].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-05-29 20:35:00
(3 months ago)
IPBlock protected site ID [4055-d][s=02].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-05-28 18:22:00
(3 months ago)
IPBlock protected site ID [4055-d][s=02].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-05-27 00:42:00
(3 months ago)
IPBlock protected site ID [4055-d][s=02].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-05-25 19:25:00
(3 months ago)
IPBlock protected site ID [4055-d][s=02].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack