πΊπΈ
TPI-Abuse
2026-10-10 19:28:14
(6 hours ago)
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 15:28:09.617229 2026] [security2:error] [pid 31833:tid 31833] [client 161.115.235.49:51387] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||kunzteam.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "kunzteam.com"] [uri "/"] [unique_id "asqRyQieE7jGm6vUgctayQAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob
2026-09-21 05:38:01
(2 weeks ago)
Asking over plain http and never following the redirect served β a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served β a crawler that reads nothing it asks for | method: GET | path: /le-groupe/notre-organisation | 2026-09-21 05:38 UTC
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-25 07:03:55
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:03:51.338286 2026] [security2:error] [pid 15031:tid 15211] [client 161.115.235.49:55559] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||greencitymethods.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "greencitymethods.com"] [uri "/about"] [unique_id "ao0-V35W_Ix_aygWW0_qpwAAANY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-28 14:47:32
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 10:47:27.749626 2026] [security2:error] [pid 2825519:tid 2825519] [client 161.115.235.49:38849] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.periodpiano.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.periodpiano.org"] [uri "/index.html"] [unique_id "amjA_6oI-5Ne0upf0itXegAAABQ"], referer: http://periodpianocollection.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
geot
2026-07-27 17:48:24
(2 months ago)
Bad bot
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-07-25 17:09:01
(2 months ago)
Malicious activity detected
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-09 02:55:13
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 08 22:55:07.257567 2026] [security2:error] [pid 29642:tid 29656] [client 161.115.235.49:56121] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||osp.schoprint.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "osp.schoprint.com"] [uri "/"] [unique_id "ak8NizlbYukodkC9TBh62AAAAMs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Lezetho
2026-06-26 21:00:18
(3 months ago)
DDoS, WebSpam, Web Attack, and Brute-force blocked by Cloudflare
DDoS Attack
Email Spam
Hacking
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-18 07:17:33
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 18 03:17:28.370185 2026] [security2:error] [pid 11738:tid 11738] [client 161.115.235.49:53241] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||blackcanyonguides.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "blackcanyonguides.com"] [uri "/"] [unique_id "ajObiPlH2_ESMXzmcMwrKwAAAA8"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-30 03:08:17
(4 months ago)
Unauthorized access (tcp/443/https)
Port Scan
Web App Attack
π¦πΊ
MAGIC
2026-05-25 00:13:51
(4 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-05-18 09:26:25
(4 months ago)
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 05:26:18.018208 2026] [security2:error] [pid 16800:tid 16800] [client 161.115.235.49:45543] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bowdens-landing.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bowdens-landing.com"] [uri "/"] [unique_id "agrbOhxXG6neHSvMSs02XAAAAAY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΈπͺ
SkyDancer
2026-05-16 18:58:33
(4 months ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
Anonymous
2026-05-16 09:52:32
(4 months ago)
Malicious activity detected
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-08 22:51:31
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.235.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 18:51:24.256271 2026] [security2:error] [pid 1608:tid 1608] [client 161.115.235.49:42881] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||sandpointidaho.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "sandpointidaho.com"] [uri "/"] [unique_id "af5o7BclTBQhOXupCSHAegAAAAs"], referer: http://skischweitzer.com/
show less
Brute-Force
Bad Web Bot
Web App Attack