๐บ๐ธ
TPI-Abuse
2026-10-03 11:41:05
(11 hours ago)
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 07:41:02.151533 2026] [security2:error] [pid 16111:tid 16111] [client 144.124.199.219:2701] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||slattery-law.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "slattery-law.com"] [uri "/"] [unique_id "asDpzuTVt9yEAzH_JpX8KQAAAAI"], referer: https://websitebacklinkmaker.shop/dir/powerful-seo-backlinks-191903
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
security.rdmc.fr
2026-10-02 19:21:36
(1 day ago)
Port Scan Attack proto:TCP src:62888 dst:23
Port Scan
๐บ๐ธ
TPI-Abuse
2026-10-02 08:39:59
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 04:39:54.220841 2026] [security2:error] [pid 8898:tid 8898] [client 144.124.199.219:55180] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||worthhomes4rent.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "worthhomes4rent.com"] [uri "/"] [unique_id "ar9t2tYj8DDPvkZ0n-Mm1wAAAAQ"], referer: https://findbacklinksofcompetitors.space/dir/backlinks-for-google-ranking-234346
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 09:51:26
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:51:21.729963 2026] [security2:error] [pid 2960:tid 2960] [client 144.124.199.219:11661] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||eatcakecup.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "eatcakecup.com"] [uri "/"] [unique_id "arzbmVMdZlnJzLUj-iCrwwAAACE"], referer: https://freebacklinks.website/dir/trusted-backlink-services-61193
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-29 15:56:41
(4 days ago)
Shop search flood (L7 DDoS) | path: /104-velo-route-fitness | query: order=product.sales.desc&q=Disp ...
show more
Shop search flood (L7 DDoS) | path: /104-velo-route-fitness | query: order=product.sales.desc&q=Disponibilit%C3%A9-En+stock/Famille-Vector | src_port: 9666
show less
DDoS Attack
Web App Attack
๐ฉ๐ช
guldkage
2026-09-29 13:14:29
(4 days ago)
Unauthorized connection attempt detected from IP address 144.124.199.219 to port 22 (ger-01) [SSH]
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-09-27 10:35:35
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 06:35:28.298730 2026] [security2:error] [pid 2401:tid 2401] [client 144.124.199.219:6977] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||solucionesmercadeodigital.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "solucionesmercadeodigital.com"] [uri "/"] [unique_id "arjxcNEluBkixtMQcG1Z9QAAAA4"], referer: https://bulkbacklinkreport.site/dir/seo-visibility-links-194178
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-26 05:54:06
(1 week ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 77>=65, Abuse 84, NonEU, first-seen)
show less
Hacking
Exploited Host
Web App Attack
๐ต๐ฑ
mkey
2026-09-25 21:55:03
(1 week ago)
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS ...
show more
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS=22 | HITS=2 | IPSET=ADD | FIRST=2026-09-25 23:52:29 | LAST=2026-09-25 23:52:30. Last seen 2026-09-25 23:52:31.
show less
Port Scan
๐บ๐ธ
xmission.com
2026-09-25 16:08:56
(1 week ago)
Blocked by UFW (TCP on 23)
Source port: 49614
TTL: 49
Packet length: 60
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 23)
Source port: 49614
TTL: 49
Packet length: 60
TOS: 0x00
This report (for 144.124.199.219) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Hacking
Brute-Force
๐ง๐ท
noconex
2026-09-25 11:13:19
(1 week ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 144.124.19 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 144.124.199.219
show less
Port Scan
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-09-25 04:27:47
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 144.124.199.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 00:27:43.083040 2026] [security2:error] [pid 4816:tid 4895] [client 144.124.199.219:37390] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||willmanlawfirm.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "willmanlawfirm.com"] [uri "/"] [unique_id "arX4P88AODeHLmewq5a4IAAAAQQ"], referer: https://websitesseochecker.space/dir/expert-link-building-services-232553
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
vtchost.com
2026-09-22 13:58:15
(1 week ago)
requested HTTP honeypot page - ignored robots.txt - bad crawler
...
Bad Web Bot
Exploited Host
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-22 03:00:26
(1 week ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 Edg/144.0.0.0
show less
Bad Web Bot
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-20 07:20:31
(1 week ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
Bad Web Bot