๐บ๐ธ
TPI-Abuse
2026-03-03 10:22:16
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 03 05:22:10.786846 2026] [security2:error] [pid 26317:tid 26317] [client 156.239.222.76:60352] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.digi-estudio.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.digi-estudio.com"] [uri "/wp-login.php"] [unique_id "aaa2UiIf-WnwjLM0MV-PRAAAAAQ"], referer: http://digi-estudio.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-02-14 00:17:10
(7 months ago)
Web password guessing
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-02-09 17:29:49
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 12:29:45.067397 2026] [security2:error] [pid 22383:tid 22383] [client 156.239.222.76:49230] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||harwoodmechanical.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "harwoodmechanical.com"] [uri "/wp-login.php"] [unique_id "aYoZidEMSG37MRgTJqIfRwAAAA4"], referer: https://harwoodmechanical.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-04 22:06:47
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jan 04 17:06:43.279500 2026] [security2:error] [pid 2564:tid 2564] [client 156.239.222.76:49318] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||schmitzcomm.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "schmitzcomm.net"] [uri "/wp-login.php"] [unique_id "aVrkczpQEq5NM28BMT-bWgAAAAk"], referer: http://schmitzcomm.net/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-31 11:24:42
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Dec 31 06:24:36.548608 2025] [security2:error] [pid 28388:tid 28388] [client 156.239.222.76:11702] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.schlegelcreative.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.schlegelcreative.com"] [uri "/wp-login.php"] [unique_id "aVUH9AjwUzVbTrCbbs8E9gAAAAY"], referer: https://www.schlegelcreative.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-31 00:58:07
(8 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
Anonymous
2025-12-09 03:46:29
(9 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-11-13 23:47:00
(10 months ago)
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 156.239.222.76 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 18:46:52.794994 2025] [security2:error] [pid 19257:tid 19257] [client 156.239.222.76:38419] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bernsteinip.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bernsteinip.com"] [uri "/wp-login.php"] [unique_id "aRZt7Bl6gp-ax1Icq-L71AAAAAI"], referer: https://bernsteinip.com/wp-login.php
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-08-01 02:02:30
(1 year ago)
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.08.01 is noted in report tim ...
show more
Attempted brute force login to web vpn 4 time(s); last attempt for 2025.08.01 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-07-31 21:14:00
(1 year ago)
Attempted brute force login to web vpn 7 time(s); last attempt for 2025.07.31 is noted in report tim ...
show more
Attempted brute force login to web vpn 7 time(s); last attempt for 2025.07.31 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฎ๐ณ
wizard1411
2025-06-15 03:15:53
(1 year ago)
DDoS and brute force activity detected
Brute-Force
SSH