๐ฆ๐บ
MAGIC
2026-09-19 04:02:18
(16 hours ago)
VM5 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-17 13:23:35
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 i ...
show more
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 09:23:29.258454 2026] [security2:error] [pid 28294:tid 28294] [client 103.120.70.205:48400] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bobbylint.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bobbylint.com"] [uri "/"] [unique_id "aqvp0YS5ZKKcX_vsogOeVAAAAA0"], referer: https://findwebsitebacklinks.shop/dir/premium-backlink-services-26614
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 12:49:21
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 i ...
show more
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 08:49:18.675725 2026] [security2:error] [pid 16328:tid 16328] [client 103.120.70.205:52298] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.hodlmoser.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.hodlmoser.com"] [uri "/"] [unique_id "aqvhzmiAM6SuT8UbrXtd7wAAAAI"], referer: https://serprankchecker.website/dir/seo-link-building-services-93607
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 10:49:37
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 i ...
show more
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 06:49:30.064059 2026] [security2:error] [pid 32701:tid 32701] [client 103.120.70.205:58230] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||flowergirlbaskets.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "flowergirlbaskets.com"] [uri "/"] [unique_id "aqvFuteJOS61x8txzrcKSwAAABM"], referer: https://dupurgeniefr.com/all/1088/13.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 07:53:45
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 i ...
show more
(mod_security) mod_security (id:210350) triggered by 103.120.70.205 (host.iibb.telcomaster.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 03:53:37.238057 2026] [security2:error] [pid 28570:tid 28570] [client 103.120.70.205:43478] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||versahealthcare.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "versahealthcare.com"] [uri "/"] [unique_id "aqucgcj_Aq6r0wixQaACGgAAABY"], referer: https://backlinksseochecker.site/dir/white-hat-backlinks-225105
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ALPHANET
2026-09-16 11:10:04
(3 days ago)
Botnet or web spider not respecting robots.txt
DDoS Attack
Exploited Host
๐ต๐ฑ
MatStef132
2026-09-12 01:08:46
(1 week ago)
MatShield L7: blocked on test-clean.mathost.eu (ua-quarantined)
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-09-11 04:38:09
(1 week ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
kosada.com
2026-09-07 04:03:23
(1 week ago)
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B0%5 ...
show more
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B0%5D=34&topics%5B1%5D=47&topics%5B2%5D=61&topics%5B3%5D=25 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.0 Safari/605.1.15")
show less
DDoS Attack
Bad Web Bot
๐ฆ๐บ
FireGuard Server
2026-09-04 16:10:11
(2 weeks ago)
Blocked by os-abuseipdb; 3 hits, proto=tcp, ports=443
Port Scan
Hacking
๐บ๐ธ
ipblock.com
2026-08-29 08:11:00
(3 weeks ago)
IPBlock protected site ID [4055-d][s=03].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-08-26 14:48:05
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
Anonymous
2026-08-25 12:16:13
(3 weeks ago)
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show more
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in thread-skip.asp
show less
Exploited Host
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-08-24 20:48:11
(3 weeks ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36 Edg/145.0.0.0
show less
Bad Web Bot
๐บ๐ธ
octageeks.com
2026-04-08 04:09:46
(5 months ago)
Wordpress malicious attack:[octainjection]
Web App Attack