πΊπΈ
Melissa O'Donnell
2026-01-07 08:02:00
(8 months ago)
Brute-Force
π©πͺ
Packets-Decreaser.NET
2025-12-31 00:58:29
(8 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
πΊπΈ
TPI-Abuse
2025-12-24 18:19:04
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 24 13:19:01.516657 2025] [security2:error] [pid 3594:tid 3629] [client 156.239.208.162:13648] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||kettlehill.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "kettlehill.com"] [uri "/wp-login.php"] [unique_id "aUwulbfsSgpTHwsH026CuwAAAA4"], referer: https://kettlehill.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-23 12:32:40
(8 months ago)
(mod_security) mod_security (id:225170) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 23 07:32:34.537925 2025] [security2:error] [pid 8700:tid 8700] [client 156.239.208.162:47960] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||hodlmoser.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "hodlmoser.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aUqL4mCwYfpHPSPRuasRjwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-17 17:42:03
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 17 12:41:55.379843 2025] [security2:error] [pid 10356:tid 10356] [client 156.239.208.162:23338] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.bigholegolf.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.bigholegolf.com"] [uri "/wp-login.php"] [unique_id "aULrYwQ0iJPHPr1jhxw0CAAAAAo"], referer: https://www.bigholegolf.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-03 14:16:47
(9 months ago)
botnet
DDoS Attack
πΊπΈ
TPI-Abuse
2025-11-17 13:21:10
(9 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.208.162 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 17 08:21:06.012342 2025] [security2:error] [pid 14046:tid 14046] [client 156.239.208.162:47967] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||lcoor.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "lcoor.org"] [uri "/wp-login.php"] [unique_id "aRshQmreYQQmsKcXbDS57AAAABE"], referer: https://lcoor.org/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
π§π·
hostseries
2025-10-01 12:42:15
(11 months ago)
Trigger: LF_DISTATTACK
Brute-Force
Anonymous
2025-07-31 16:59:13
(1 year ago)
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.07.31 is noted in report tim ...
show more
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.07.31 is noted in report timestamp
show less
Hacking
Brute-Force