๐บ๐ธ
Brian
2026-04-08 20:29:00
(4 months ago)
ModSecurity: Warning. detected SQLi using libinjection with fingerprint
SQL Injection
๐ณ๐ฑ
jjnxpct
2026-01-22 05:30:48
(7 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /index.php (Rule ID: 920210) - Multiple/Conflicting Connection Header Data Found
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 11:06:01
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 06:05:53.629284 2026] [security2:error] [pid 7006:tid 7006] [client 141.11.169.46:39303] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.footballxp.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.footballxp.com"] [uri "/kyc-aml-policy/"] [unique_id "aXCzEQGmG7S6R8yz9etsHwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 05:09:53
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 00:09:50.317568 2026] [security2:error] [pid 2087263:tid 2087263] [client 141.11.169.46:45085] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.mooseled.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.mooseled.com"] [uri "/index.php"] [unique_id "aXBfniEVDa0TkFHxW87E9QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 04:40:31
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 23:40:26.924245 2026] [security2:error] [pid 24289:tid 24289] [client 141.11.169.46:45771] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.r-390a.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.r-390a.net"] [uri "/Redux/04_Apr_05.pdf"] [unique_id "aXBYuvffS0EOcwn-yApTGQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 01:45:55
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 20:45:29.903811 2026] [security2:error] [pid 995182:tid 995219] [client 141.11.169.46:35615] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||stonyp.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "stonyp.com"] [uri "/"] [unique_id "aXAvuUN2_KUYOVNQHHthKQAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-20 19:13:04
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 14:12:59.059420 2026] [security2:error] [pid 26218:tid 26218] [client 141.11.169.46:54387] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.powerkiteforum.com"] [uri "/.env"] [unique_id "aW_TuxqC2YpjaQV0a6PVYAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-20 18:37:51
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 13:37:44.139954 2026] [security2:error] [pid 10455:tid 10455] [client 141.11.169.46:33965] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||med-engineering.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "med-engineering.com"] [uri "/component/k2/item/1/1.html"] [unique_id "aW_LeFTfwiHUROyQgMVdqgAAAAw"], referer: http://med-engineering.com/component/k2/item/1/1.html?start=2556940
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-20 01:34:45
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 141.11.169.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jan 19 20:34:23.512361 2026] [security2:error] [pid 24411:tid 24496] [client 141.11.169.46:59445] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.seips.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.seips.org"] [uri "/viewitem.php"] [unique_id "aW7bn7X3eOkUxb8GjOS6IgAAAdg"], referer: http://www.seips.org/viewitem.php?ID=+AND+0%3DCAST%28COALESCE%28%28SELECT+version%28%29%29%3A%3Atext%2C+CHR%2832%29%29%3A%3Atext+%7C%7C+CHR%2867%29+AS+NUMERIC%29--+and+1%3D1
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-01-19 21:35:38
(7 months ago)
IM360 WAF: SQL Injection Attack: Common DB Names Detected
SQL Injection
Anonymous
2026-01-19 21:30:05
(7 months ago)
| Multiple SQL injection attempts from same source ip.(multiple servers)
Hacking
SQL Injection
Web App Attack