๐บ๐ธ
TPI-Abuse
2026-09-18 09:44:35
(13 hours ago)
(mod_security) mod_security (id:210350) triggered by 179.238.47.130 (customer.bnssarg1.isp.starlink. ...
show more
(mod_security) mod_security (id:210350) triggered by 179.238.47.130 (customer.bnssarg1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 05:44:30.287634 2026] [security2:error] [pid 20284:tid 20352] [client 179.238.47.130:3055] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||adprospb.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "adprospb.com"] [uri "/"] [unique_id "aq0H_lXqOnEB0vCbm2CXIwAAAQE"], referer: https://adprosofpalmbeach.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 02:05:29
(20 hours ago)
(mod_security) mod_security (id:210350) triggered by 179.238.47.130 (customer.bnssarg1.isp.starlink. ...
show more
(mod_security) mod_security (id:210350) triggered by 179.238.47.130 (customer.bnssarg1.isp.starlink.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 22:05:22.730618 2026] [security2:error] [pid 22583:tid 22583] [client 179.238.47.130:14876] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pacsai.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pacsai.com"] [uri "/"] [unique_id "aqycYqJxo_Zoj3nZ1wtT5wAAABI"], referer: https://freeblogseochecker.site/dir/seo-growth-backlinks-157226
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Petre 21_ip
2026-09-04 10:50:14
(2 weeks ago)
2026-09-04T12:50:13.405266+02:00 vmi2775508 kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:5c:a7:cf:c ...
show more
2026-09-04T12:50:13.405266+02:00 vmi2775508 kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:50:56:5c:a7:cf:c0:69:11:b3:85:db:08:00 SRC=179.238.47.130 DST=155.133.26.57 LEN=60 TOS=0x00 PREC=0x00 TTL=54 ID=64289 DF PROTO=TCP SPT=42667 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0
...
show less
Port Scan
๐ง๐ท
noconex
2026-09-04 07:53:15
(2 weeks ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 179.238.47 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 179.238.47.130
show less
Port Scan
Brute-Force
SSH
๐ฉ๐ช
milcraft.nl
2026-09-03 22:40:05
(2 weeks ago)
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi ...
show more
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi patterns: filter_, add-to-cart=, orderby=, product_count=. Activity is consistent with high-volume request abuse.
show less
DDoS Attack
Web App Attack
๐ซ๐ท
bigorre.org
2026-09-03 16:57:29
(2 weeks ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
๐ฉ๐ช
milcraft.nl
2026-09-01 03:20:21
(2 weeks ago)
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi ...
show more
Suspicious WooCommerce query combination detected. Not default available on websites. Matched combi patterns: filter_, add-to-cart=, orderby=, product_count=. Activity is consistent with high-volume request abuse.
show less
DDoS Attack
Web App Attack
๐จ๐ญ
backslash
2026-08-28 00:12:02
(3 weeks ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
๐ฐ๐ท
winter
2026-08-26 10:27:47
(3 weeks ago)
Connection attemp from 179.238.47.130 to port 22
Brute-Force
SSH
๐ฉ๐ช
_ArminS_
2026-08-26 08:06:51
(3 weeks ago)
Bad SSHAUTH 2026.08.26 10:06:51
blocked until 2026.08.29 10:06:51
by HoneyPot DE_State of Berlin01
SSH
Brute-Force
Hacking
Anonymous
2026-08-26 06:12:46
(3 weeks ago)
denied SSH access attempt. destination port 22.
Port Scan
Brute-Force
SSH
Anonymous
2026-08-26 04:32:30
(3 weeks ago)
suricata IPS/IDS detection, ruleset ET SCAN Potential SSH Scan
Port Scan
๐ง๐ท
noconex
2026-08-25 03:52:03
(3 weeks ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 179.238.47 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 179.238.47.130
show less
Port Scan
Brute-Force
SSH
๐ท๐ธ
Scan
2026-08-25 02:52:30
(3 weeks ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
๐ง๐ท
noconex
2026-08-24 00:43:13
(3 weeks ago)
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 179.238.47 ...
show more
Wazuh Alert | Rule ID: 100199 | Desc: Suricata: (ET SCAN Potential SSH Scan) detectado de 179.238.47.130
show less
Port Scan
Brute-Force
SSH