๐บ๐ธ
TPI-Abuse
2026-09-30 10:26:15
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 181.66.164.69 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 181.66.164.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:26:09.792401 2026] [security2:error] [pid 26043:tid 26073] [client 181.66.164.69:15867] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||unitedonegroup.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "unitedonegroup.com"] [uri "/"] [unique_id "arzjwVDZQsSHmftlZ_YM7QAAAQc"], referer: https://localseobacklinks.online/dir/google-ranking-backlinks-221623
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 01:06:31
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 181.66.164.69 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 181.66.164.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 21:06:26.966203 2026] [security2:error] [pid 23004:tid 23004] [client 181.66.164.69:3090] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||railsolutionsmexico.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "railsolutionsmexico.com"] [uri "/"] [unique_id "aqs9EpDHF3S6MmqyMguxGgAAAAg"], referer: https://domaindachecker.website/dir/custom-seo-backlinks-171655
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-08-14 03:32:22
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฎ๐น
A000Z
2026-05-30 21:31:04
(4 months ago)
Fail2Ban: 181.66.164.69 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5. ...
show more
Fail2Ban: 181.66.164.69 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/56.0.4735.1277 Safari/537.36
show less
Bad Web Bot
๐ณ๐ฑ
MatStef132
2026-05-24 16:42:30
(4 months ago)
MatShield L7: blocked on anonymous (ua-quarantined)
Bad Web Bot
๐ต๐น
rnl
2023-07-01 09:15:56
(3 years ago)
postfix (unknown user, SPF fail or relay access denied)
Brute-Force
๐ฉ๐ช
mapik
2022-10-25 20:49:02
(3 years ago)
2022-10-26T02:31:18.374370 multi.mapik.cz postfix/smtpd[2238143]: NOQUEUE: reject: RCPT from unknown ...
show more
2022-10-26T02:31:18.374370 multi.mapik.cz postfix/smtpd[2238143]: NOQUEUE: reject: RCPT from unknown[181.66.164.69]: 554 5.7.1 Service unavailable; Client host [181.66.164.69] blocked using zen.spamhaus.org; https://www.spamhaus.org/sbl/query/SBLCSS / https://www.spamhaus.org/query/ip/181.66.164.69; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<[181.66.164.69]>
...
show less
Brute-Force
๐ธ๐ฌ
Sean64
2022-10-20 22:01:24
(3 years ago)
Oct 21 10:01:02 sean postfix/smtpd[2697548]: NOQUEUE: reject: RCPT from unknown[181.66.164.69]: 554 ...
show more
Oct 21 10:01:02 sean postfix/smtpd[2697548]: NOQUEUE: reject: RCPT from unknown[181.66.164.69]: 554 5.7.1 <[email protected] >: Sender address rejected: Access denied; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<[181.66.164.69]>
Oct 21 10:01:14 sean postfix/smtpd[2697550]: NOQUEUE: reject: RCPT from unknown[181.66.164.69]: 554 5.7.1 <[email protected] >: Sender address rejected: Access denied; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<[181.66.164.69]>
Oct 21 10:01:23 sean postfix/smtpd[2697550]: NOQUEUE: reject: RCPT from unknown[181.66.164.69]: 554 5.7.1 <[email protected] >: Sender address rejected: Access denied; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<[181.66.164.69]>
...
show less
Email Spam
Brute-Force
๐บ๐ธ
vestibtech
2022-10-15 06:04:20
(3 years ago)
Oct 15 04:04:19 Host-KLAX-C amavis[624827]: (624827-02) Blocked SPAM {RejectedInternal}, AM.PDP-SOCK ...
show more
Oct 15 04:04:19 Host-KLAX-C amavis[624827]: (624827-02) Blocked SPAM {RejectedInternal}, AM.PDP-SOCK LOCAL [181.66.164.69] [181.66.164.69] <[email protected] > -> <[email protected] >, Queue-ID: D64301BF623, Message-ID: <[email protected] >, mail_id: 1emzSsgwULxU, Hits: 35.641, size: 5221, 664 ms
...
show less
Email Spam
Anonymous
2022-10-14 21:36:31
(3 years ago)
Oct 15 03:36:31 ns3104219 postfix/smtpd[11879]: NOQUEUE: reject: RCPT from unknown[181.66.164.69]: 4 ...
show more
Oct 15 03:36:31 ns3104219 postfix/smtpd[11879]: NOQUEUE: reject: RCPT from unknown[181.66.164.69]: 450 4.7.1 Client host rejected: cannot find your reverse hostname, [181.66.164.69]; from=<[email protected] > to=<[email protected] > proto=ESMTP helo=<[181.66.164.69]>
...
show less
Email Spam
Web App Attack