๐บ๐ธ
TPI-Abuse
2026-09-03 15:22:56
(9 hours ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:22:47.890517 2026] [security2:error] [pid 2321:tid 2321] [client 118.31.112.143:59584] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||lukeautogas.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "lukeautogas.com"] [uri "/"] [unique_id "apmQx3jJiQswXXO_rBEMSAAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 15:35:23
(1 day ago)
IP matched detection query 50 and more bad rqs apache.
Hacking
Bad Web Bot
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-09-02 02:05:25
(1 day ago)
Request Overload (124)
Brute-Force
Web App Attack
Anonymous
2026-09-01 04:39:03
(2 days ago)
Inbound connection from a host listed on multiple threat intelligence feeds, blocked preventively. N ...
show more
Inbound connection from a host listed on multiple threat intelligence feeds, blocked preventively. No direct attack observed from this address on this server. Detected and blocked automatically.
show less
Exploited Host
๐บ๐ธ
mnsf
2026-09-01 01:05:34
(2 days ago)
Request Overload (107)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-08-31 00:08:05
(4 days ago)
Request Overload (101)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 02:13:28
(5 days ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:13:23.925748 2026] [security2:error] [pid 2309:tid 2309] [client 118.31.112.143:50418] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rangeroader.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rangeroader.com"] [uri "/"] [unique_id "apJAQ6r2TXN3WzLKy4STxwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 16:17:20
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 12:17:16.847719 2026] [security2:error] [pid 7851:tid 7851] [client 118.31.112.143:47254] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.barigby.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.barigby.com"] [uri "/"] [unique_id "apG0jM7HiA8OvNfM4G8aAAAAAA4"], referer: http://gunseller.auction
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 15:42:40
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:42:36.203547 2026] [security2:error] [pid 675:tid 675] [client 118.31.112.143:34834] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||wastetrack.io|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "wastetrack.io"] [uri "/"] [unique_id "apGsbHXDN1oi3a4KhFNIIAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:46:19
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:46:11.111911 2026] [security2:error] [pid 17222:tid 17222] [client 118.31.112.143:46410] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||apcalculusexamprep.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "apcalculusexamprep.com"] [uri "/"] [unique_id "apAjg9T3FVLDWTtUvWyfiAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:44:35
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:44:31.360182 2026] [security2:error] [pid 29432:tid 29442] [client 118.31.112.143:53532] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||fearofpools.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "fearofpools.com"] [uri "/"] [unique_id "apAVD28IhRecLv-UuUGsNQAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:13:10
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:13:06.491537 2026] [security2:error] [pid 4087:tid 4087] [client 118.31.112.143:52650] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||3dcounty.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "3dcounty.com"] [uri "/"] [unique_id "ao_xkgaXifJItBM5aoaw1wAAAAY"], referer: http://3dainews.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 07:34:28
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 03:34:21.394716 2026] [security2:error] [pid 7266:tid 7284] [client 118.31.112.143:57650] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bougie-bengals.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bougie-bengals.com"] [uri "/"] [unique_id "ao_ofZup_YC9CRpZWTeXGgAAAIo"], referer: http://bengalcatscalifornia.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:59:14
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:59:07.484049 2026] [security2:error] [pid 1175:tid 1175] [client 118.31.112.143:60650] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||controldent.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "controldent.net"] [uri "/"] [unique_id "ao_gO_V-wTVHLcMQv3TVAwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:39:17
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 118.31.112.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:39:12.962811 2026] [security2:error] [pid 22225:tid 22225] [client 118.31.112.143:43078] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bayoutown.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bayoutown.org"] [uri "/"] [unique_id "ao_bkHRuE4wf5meeMzZb1wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack