๐บ๐ธ
sumnone
2026-08-24 13:01:00
(1 day ago)
Port probing on unauthorized port 23
Port Scan
Hacking
Exploited Host
Anonymous
2026-08-23 04:38:49
(2 days ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
Anonymous
2026-08-13 02:03:43
(1 week ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
Anonymous
2026-08-03 17:46:06
(3 weeks ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
Anonymous
2026-01-12 01:57:40
(7 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-10-27 23:08:17
(9 months ago)
(mod_security) mod_security (id:210350) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 27 19:08:10.089334 2025] [security2:error] [pid 608696:tid 608696] [client 120.220.232.148:43331] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.marxistphilosophy.org|F|4"] [data "close, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.marxistphilosophy.org"] [uri "/maozedong/mzd.htm"] [unique_id "aP_7Wpsh_TFUytIPg-NuxwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-10-11 13:54:06
(10 months ago)
(mod_security) mod_security (id:217291) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:217291) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 11 09:53:58.599184 2025] [security2:error] [pid 15519:tid 15519] [client 120.220.232.148:52035] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(\\\\n|\\\\r)" at ARGS_NAMES:\\r\\ne\\r\\nm. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "145"] [id "217291"] [rev "2"] [msg "HTTP Header Injection Attack via payload (CR/LF detected)||kountz.org|F|2"] [data "Matched Data: \\x0d found within ARGS_NAMES:\\x5cr\\x5cne\\x5cr\\x5cnm: \\x0d\\x0ae\\x0d\\x0am"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "kountz.org"] [uri "/calendar.php"] [unique_id "aOphdiZrOXpfk4alzsQtnQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-20 15:13:39
(11 months ago)
(mod_security) mod_security (id:210350) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 20 11:13:33.057907 2025] [security2:error] [pid 26196:tid 26196] [client 120.220.232.148:35534] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.ictsl.net|F|4"] [data "close, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.ictsl.net"] [uri "/productos/aparatos/agitadormagneticodigital2clcdrslabcc.html"] [unique_id "aM7EnRYbS567OECfmXsbtQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-09-18 20:14:30
(11 months ago)
(mod_security) mod_security (id:210350) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 120.220.232.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 18 16:14:23.531302 2025] [security2:error] [pid 426:tid 426] [client 120.220.232.148:55677] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.renju.net|F|4"] [data "close, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.renju.net"] [uri "/tournament/298/game/5156/"] [unique_id "aMxoH8krmMn-Uk5Bqgs_dAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack