Anonymous
2026-09-02 03:15:02
(3 days ago)
Malicious activity detected
Hacking
Web App Attack
Anonymous
2026-08-25 21:37:11
(1 week ago)
Banned by Fail2Ban on server
Web App Attack
🇺🇸
TPI-Abuse
2026-08-22 03:39:26
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 23:39:18.291305 2026] [security2:error] [pid 2492:tid 2492] [client 146.112.163.41:42725] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fractalsky.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fractalsky.com"] [uri "/blackhorrormovie.com"] [unique_id "aokZ5nx_uW1ZRrcWnvhwGAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
grassau.com
2026-08-16 03:44:58
(2 weeks ago)
*Port Scan* detected from 146.112.163.41 (US/United States/Virginia/Reston/-).
Port Scan
🇳🇱
Cloud86 B.V.
2026-08-09 03:13:01
(3 weeks ago)
categories: DDoS Attack
DDoS Attack
🇸🇪
vaia.cloud
2026-08-08 01:10:02
(4 weeks ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇸🇪
vaia.cloud
2026-08-04 11:25:02
(1 month ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-03 08:09:39
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 03 04:09:32.075912 2026] [security2:error] [pid 106547:tid 106547] [client 146.112.163.41:28554] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||3dsportschannel.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "3dsportschannel.com"] [uri "/inde.cgi.com/index.cgi"] [unique_id "anBMvNzHe3N3JDhVyE5sWwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-30 08:30:57
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 04:30:52.944611 2026] [security2:error] [pid 3274624:tid 3274624] [client 146.112.163.41:31727] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.jackkerrart.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.jackkerrart.com"] [uri "/wpscripts/jspngfix.js"] [unique_id "amsLvG_n3NhdaXt0guyiagAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-27 07:41:34
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 03:41:26.926100 2026] [security2:error] [pid 22552:tid 22581] [client 146.112.163.41:17411] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||tvpin.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "tvpin.com"] [uri "/index.cgi"] [unique_id "amcLpvHu7z9_AOfry_cH6QAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
grassau.com
2026-07-26 05:50:26
(1 month ago)
*Port Scan* detected from 146.112.163.41 (US/United States/Virginia/Reston/-).
Port Scan
🇺🇸
anti-res
2026-07-23 04:22:31
(1 month ago)
Attempt of unauthorized access
Port Scan
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-07 07:38:19
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 07 03:38:14.776320 2026] [security2:error] [pid 7338:tid 7338] [client 146.112.163.41:2366] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.weddingmusicguitar.benshermanguitar.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.weddingmusicguitar.benshermanguitar.com"] [uri "/wp-content/uploads/2016/01/IMG_0410v2_web.jpg"] [unique_id "akys5uVGDbrk2g2xJceLhwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
MAGIC
2026-06-27 05:01:29
(2 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇨🇭
blinx
2026-06-26 09:03:22
(2 months ago)
Suspicious activity detected by Modsecurity
Web Spam
Port Scan
Hacking
Bad Web Bot
Web App Attack