This IP address has been reported a total of
3
times from
3 distinct
sources.
176.29.2.154 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210350) triggered by 176.29.2.154 (-): 1 in the last 300 secs; Ports ...
show more(mod_security) mod_security (id:210350) triggered by 176.29.2.154 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 15:37:21.117411 2026] [security2:error] [pid 26892:tid 26892] [client 176.29.2.154:22548] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||susanoneill.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "susanoneill.us"] [uri "/"] [unique_id "aqrv8bRvriSwYz9dR_Fq-QAAAAM"], referer: https://markbudman.net/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Attribution: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (E ...
show moreAttribution: mikhail-smirnov-79830323 (LinkedIn/profile ID) employed by Angara Technologies Group (Explicitly identified himself as enemy a week before attack began) | Aggressive search filter manipulation / web scraper probe on port 443 | URI: Excessive filters used: /catalogsearch/result/?cat=33+&q=AC+USB+212+EU&screensize=18&stock=1 | UA: Mozilla/5.0 (compatible; MSIE 6.0; Windows NT 10.0; Trident/3.1) | (Magento Site)
show less