🇺🇸
TPI-Abuse
2026-10-03 11:21:36
(16 hours ago)
(mod_security) mod_security (id:210350) triggered by 177.128.242.62 (177-128-242-62.netcomet.com.br) ...
show more
(mod_security) mod_security (id:210350) triggered by 177.128.242.62 (177-128-242-62.netcomet.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 07:21:29.388454 2026] [security2:error] [pid 6114:tid 6114] [client 177.128.242.62:45054] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||mylesmitchell.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "mylesmitchell.com"] [uri "/"] [unique_id "asDlOVAvV03DZ-zBDJ2JHQAAABo"], referer: https://massbacklinkgenerator.store/dir/premium-backlink-services-143514
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-30 06:50:49
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 177.128.242.62 (177-128-242-62.netcomet.com.br) ...
show more
(mod_security) mod_security (id:210350) triggered by 177.128.242.62 (177-128-242-62.netcomet.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 02:50:40.356563 2026] [security2:error] [pid 10795:tid 10795] [client 177.128.242.62:44183] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||mikeneame.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "mikeneame.com"] [uri "/"] [unique_id "aryxQLakCHLGztqtMarO9AAAACY"], referer: https://buildingbacklinks.shop/dir/organic-visibility-backlinks-136477
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-25 21:38:36
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 177.128.242.62 (177-128-242-62.netcomet.com.br) ...
show more
(mod_security) mod_security (id:210350) triggered by 177.128.242.62 (177-128-242-62.netcomet.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 17:38:30.773511 2026] [security2:error] [pid 21289:tid 21289] [client 177.128.242.62:44698] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ldwla.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ldwla.com"] [uri "/"] [unique_id "arbp1rGix_M3gwPnDdilEwAAAAI"], referer: https://websitelinkschecker.space/dir/niche-relevant-backlinks-119518
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
鬼影233
2026-08-23 13:10:59
(1 month ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
🇺🇸
kosada.com
2026-08-20 16:25:24
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇩🇪
LRob
2026-08-18 18:40:36
(1 month ago)
Application-layer flood: hammering search, login or AJAX endpoints far beyond any human use | path: ...
show more
Application-layer flood: hammering search, login or AJAX endpoints far beyond any human use | path: /4-velos-electriques
show less
DDoS Attack
Web App Attack
🇩🇪
SMARTNET
2026-05-27 06:03:53
(4 months ago)
Aisuru(Mirai variant) DDoS | Incident ID: 22ada211-5b5c-463a-b46f-60fd11dc639d
DDoS Attack
🇵🇱
Ba-Yu
2025-09-29 22:41:12
(1 year ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
🇳🇱
exxos
2025-08-29 17:05:05
(1 year ago)
Attacks with Bad user agents
Hacking
🇧🇷
felipeforte
2025-08-28 01:33:15
(1 year ago)
Part of a massive DDoS/scraping botnet
DDoS Attack
Bad Web Bot
🇳🇱
exxos
2025-08-20 07:03:01
(1 year ago)
http-no-verb
Hacking