๐บ๐ธ
TPI-Abuse
2026-09-18 18:20:08
(12 hours ago)
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.c ...
show more
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 14:20:04.227448 2026] [security2:error] [pid 28955:tid 28955] [client 150.228.105.9:21468] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||laura-stone.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "laura-stone.com"] [uri "/"] [unique_id "aq2A1LiXetST_RigbqwPcwAAAAk"], referer: https://judesierra.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 17:33:30
(13 hours ago)
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.c ...
show more
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 13:33:26.079346 2026] [security2:error] [pid 22893:tid 22893] [client 150.228.105.9:31108] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||thereisaplaceonearth.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "thereisaplaceonearth.com"] [uri "/"] [unique_id "aq115gDK7RQafbmxRXOy7AAAAAI"], referer: https://websiteprchecker.store/dir/professional-seo-backlinks-211194
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 13:06:22
(18 hours ago)
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.c ...
show more
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 09:06:18.189079 2026] [security2:error] [pid 3401648:tid 3401648] [client 150.228.105.9:9543] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||johnprimerano.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "johnprimerano.com"] [uri "/"] [unique_id "aq03SkxFF6HY9Ao7zoncpQAAAA0"], referer: https://websitedatachecker.shop/dir/backlinks-for-traffic-108050
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 10:53:34
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.c ...
show more
(mod_security) mod_security (id:210350) triggered by 150.228.105.9 (customer.sfiabgr1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 06:53:28.205356 2026] [security2:error] [pid 16444:tid 16444] [client 150.228.105.9:49930] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||madisonjazzorchestra.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "madisonjazzorchestra.com"] [uri "/"] [unique_id "aqvGqIoTc3kwxDb81rOJSQAAAAY"], referer: https://dupurgeniefr.com/all/1808/4.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-09-15 14:44:28
(3 days ago)
Web App Attack
Web App Attack
Anonymous
2026-09-14 12:43:42
(4 days ago)
[UDP/35386] Unsolicited connection attempt on a port with no legitimate public service.
Port Scan
Hacking
Anonymous
2026-09-13 22:37:32
(5 days ago)
WEB attack
Brute-Force
๐ต๐ฑ
MatStef132
2026-08-28 19:44:49
(3 weeks ago)
MatShield L7: blocked on test-clean.mathost.eu (ua-quarantined)
Bad Web Bot
Anonymous
2026-08-28 08:00:05
(3 weeks ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
Anonymous
2026-07-29 17:55:47
(1 month ago)
denied traffic to a honeypot network. destination port 23.
Port Scan
Hacking
๐บ๐ธ
kosada.com
2026-07-27 20:22:24
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ธ๐ช
NordhTech
2026-07-24 07:45:13
(1 month ago)
More than 3 malicious connection attempts, trying port(s) 3389/tcp, then blocked from services ...
Port Scan
Hacking
๐บ๐ธ
RAP
2026-05-12 14:22:35
(4 months ago)
2026-05-12 14:22:35 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
Anonymous
2026-05-12 13:20:25
(4 months ago)
Unauthorized connection attempt on Port 23
Port Scan
Hacking
Exploited Host
๐บ๐ธ
RAP
2026-05-12 09:05:00
(4 months ago)
2026-05-12 09:05:00 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan