🇪🇸
Michael McCarthy
2026-08-29 15:02:22
(1 day ago)
Web Spam
🇺🇸
TPI-Abuse
2026-08-01 10:15:14
(4 weeks ago)
(mod_security) mod_security (id:210350) triggered by 161.115.239.197 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.239.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 06:15:06.433381 2026] [security2:error] [pid 4428:tid 4428] [client 161.115.239.197:32789] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||americaskitchencoach.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "americaskitchencoach.com"] [uri "/deidre100.html"] [unique_id "am3HKkiSxMMXPocvr8UBIQAAAAs"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-28 07:44:18
(1 month ago)
Malicious activity detected
Hacking
Web App Attack
🇷🇺
DZBOT
2026-07-11 21:45:41
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-07-03 18:39:20
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 161.115.239.197 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.239.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 14:39:13.937921 2026] [security2:error] [pid 26170:tid 26170] [client 161.115.239.197:42167] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||imaginationbyme.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "imaginationbyme.com"] [uri "/"] [unique_id "akgB0ZiW2Oxd7jYaNfcTlAAAAAA"], referer: http://imaginationby.me/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-28 04:38:29
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 161.115.239.197 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 161.115.239.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 00:38:23.969076 2026] [security2:error] [pid 25493:tid 25493] [client 161.115.239.197:60765] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||orthopaedicsurgical.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "orthopaedicsurgical.com"] [uri "/"] [unique_id "ahfGvyDo33rBk6dCqJ_5RAAAAAs"], referer: http://drlinsalata.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
percocet
2026-05-01 05:05:13
(3 months ago)
Cloudflare blocked 1 requests (HTTP 403) in 1h. Country: US
DDoS Attack
Web App Attack
🇩🇪
kranem
2026-02-04 06:00:09
(6 months ago)
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 6079 (RCN-AS - RCN)
Protocol: HTTP/2 (GET ...
show more
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 6079 (RCN-AS - RCN)
Protocol: HTTP/2 (GET method)
Endpoint: /
Timestamp: 2026-02-04T04:50:12Z
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36 Edg/99.0.1150.30
show less
Bad Web Bot
🇩🇪
conseilgouz
2026-02-02 11:43:37
(6 months ago)
ecw-Joomla User : try to access forms...
Hacking