Anonymous
2026-09-06 03:21:43
(14 hours ago)
Banned by Fail2Ban on server
Web App Attack
🇩🇪
grassau.com
2026-08-28 01:51:36
(1 week ago)
*Port Scan* detected from 146.112.163.53 (US/United States/Virginia/Reston/-).
Port Scan
🇩🇪
LRob
2026-08-26 08:01:09
(1 week ago)
Connection flood: far more simultaneous connections than any client needs, dropped by the server | 2 ...
show more
Connection flood: far more simultaneous connections than any client needs, dropped by the server | 2026-08-26 08:01 UTC
show less
DDoS Attack
🇩🇪
LRob
2026-08-23 08:56:39
(2 weeks ago)
Connection flood: far more simultaneous connections than any client needs, dropped by the server
DDoS Attack
🇮🇹
VHosting
2026-08-12 07:50:04
(3 weeks ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
🇸🇪
vaia.cloud
2026-08-02 01:05:02
(1 month ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-07-28 07:05:34
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 03:05:28.347058 2026] [security2:error] [pid 2315644:tid 2315644] [client 146.112.163.53:61497] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.discountphotogifts.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.discountphotogifts.com"] [uri "/css/main2.css"] [unique_id "amhUuJHnTIZjWu_EbfoAVgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-27 06:17:11
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 02:17:06.817847 2026] [security2:error] [pid 3617126:tid 3617126] [client 146.112.163.53:39946] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.michaelprussin.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.michaelprussin.com"] [uri "/favicon.ico"] [unique_id "amb34u1rY7D5dNq8jNmEaAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
gerensat
2026-07-22 03:58:52
(1 month ago)
2026-07-22 00:58:52 | / | [] | Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko ...
show more
2026-07-22 00:58:52 | / | [] | Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/149.0.0.0 Safari/537.36
show less
Web App Attack
🇩🇪
4server
2026-07-20 08:48:43
(1 month ago)
[MonJul2010:48:39.5090142026][security2:error][pid1445932:tid1445938][client146.112.163.53:0]ModSecu ...
show more
[MonJul2010:48:39.5090142026][security2:error][pid1445932:tid1445938][client146.112.163.53:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/wp-content/plugins/content-manager-light/\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"377\"][id\"1101013\"][hostname\"alessandrolucchini.ch\"][uri\"/wp-content/plugins/content-manager-light/include/otw_components/otw_grid_manager_light/css/otw-grid.css\"][unique_id\"al3g5xj2F8lLMDjJh01tDAAAAQM\"]\,referer:https://alessandrolucchini.ch/
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-07-20 04:59:43
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 00:59:37.427147 2026] [security2:error] [pid 29344:tid 29344] [client 146.112.163.53:6712] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.trinitydent.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.trinitydent.com"] [uri "/wp-content/uploads/elementor/google-fonts/css/robotoslab.css"] [unique_id "al2rOR4PMYAXVKXhiKmxuQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-19 03:53:00
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 23:52:53.260832 2026] [security2:error] [pid 11910:tid 11910] [client 146.112.163.53:25184] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||motioncontrolpartners.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "motioncontrolpartners.com"] [uri "/base.css"] [unique_id "alxKFTJLyZXgZEZVw4KLjgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-16 07:05:21
(1 month ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 03:05:14.570726 2026] [security2:error] [pid 12123:tid 12184] [client 146.112.163.53:61916] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||tvpin.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "tvpin.com"] [uri "/index.cgi"] [unique_id "aliCqoU3Np-I53Rr0K7aiAAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
YF
2026-06-28 04:05:23
(2 months ago)
Attaque distribuée subnet
DDoS Attack
Web App Attack
🇺🇸
TPI-Abuse
2026-06-28 03:17:44
(2 months ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 23:17:41.348133 2026] [security2:error] [pid 945:tid 945] [client 146.112.163.53:49246] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||automatebi.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "automatebi.com"] [uri "/wp-content/uploads/2012/07/favicon1.ico"] [unique_id "akCSVeEBffSafbAkvdXmRwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack