๐บ๐ธ
TPI-Abuse
2026-10-03 14:59:52
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 144.124.193.69 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.193.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 10:59:46.340124 2026] [security2:error] [pid 8790:tid 8790] [client 144.124.193.69:1057] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||greensealusa.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "greensealusa.com"] [uri "/"] [unique_id "asEYYudH6kqGlqzBhZBo1QAAAAI"], referer: https://seebacklinks.website/dir/organic-growth-links-85838
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
hermawan
2026-10-02 00:11:50
(2 days ago)
[Fri Oct 02 02:32:05.264236 2026] [security2:error] [pid 537636:tid 140370360903360] [client 144.124 ...
show more
[Fri Oct 02 02:32:05.264236 2026] [security2:error] [pid 537636:tid 140370360903360] [client 144.124.193.69:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bing.go.id" at REQUEST_HEADERS:referer. [file "/etc/modsecurity/coreruleset-4.29.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "602"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bing.go.id found within REQUEST_HEADERS:referer: https://www.bing.go.id/ request_line = GET /images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Sifat_Hujan_Bulanan/Prakiraan_Sifat_Hujan_Bulanan_Provinsi_Jawa_Timur/2026/01_Januari_2026/01_Prediksi_Sifat_Hujan_Bulan_MARET_2026_di_Provinsi_Jawa_Timur-Update_dari_Analisis_Bulan_Januari_2026.jpg HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/images/Klimatologi/Prakiraan/03-Prakiraan-Bulanan/Prakiraan_Sifat_Hujan_Bulanan/Prakiraan_Sifat_Hujan_Bulanan_Provinsi_Jawa_Timur/2026/01_Januari_2026/01_Prediksi_Sifat_Hujan_Bulan_MARET_2
...
show less
Email Spam
Hacking
Anonymous
2026-10-01 07:52:58
(3 days ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-30 08:59:17
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 144.124.193.69 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.193.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:59:13.113634 2026] [security2:error] [pid 15539:tid 15585] [client 144.124.193.69:21226] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dwcwelding.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dwcwelding.com"] [uri "/"] [unique_id "arzPYYX2CMsBUsXaplWkDwAAAZE"], referer: https://qualitybacklinkservice.space/dir/high-da-backlinks-60168
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-24 07:22:46
(1 week ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
๐บ๐ธ
RAP
2026-09-23 22:10:53
(1 week ago)
2026-09-23 22:10:53 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-21 03:00:47
(1 week ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-17 07:54:10
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 144.124.193.69 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.193.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 03:54:06.379508 2026] [security2:error] [pid 10957:tid 10957] [client 144.124.193.69:40907] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.trinitydent.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.trinitydent.com"] [uri "/"] [unique_id "aqucnvlY2295vu1saTBsPAAAAAI"], referer: https://drcheckerbulk.space/dir/custom-seo-backlinks-217755
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
stroytrest
2026-09-02 17:48:43
(1 month ago)
2026-09-02T20:48:43.038270+03:00 gate kernel: [132498.383281] nftables: JAIL-SSH IN=wan OUT= MAC= SR ...
show more
2026-09-02T20:48:43.038270+03:00 gate kernel: [132498.383281] nftables: JAIL-SSH IN=wan OUT= MAC= SRC=144.124.193.69 DST=xxx.xxx.xxx.xxx LEN=60 TOS=0x00 PREC=0x00 TTL=53 ID=54492 DF PROTO=TCP SPT=36087 DPT=22 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
Anonymous
2026-09-02 09:18:19
(1 month ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
๐บ๐ธ
RAP
2026-09-02 03:51:53
(1 month ago)
2026-09-02 03:51:53 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
Anonymous
2026-08-17 08:49:03
(1 month ago)
denied Telnet access attempt. destination port 23.
Port Scan
Brute-Force
๐บ๐ธ
RAP
2026-08-16 15:31:06
(1 month ago)
2026-08-16 15:31:06 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐บ๐ธ
MPL
2026-08-16 05:23:00
(1 month ago)
tcp/23 (2 or more attempts)
Port Scan