๐บ๐ธ
TPI-Abuse
2026-07-23 23:01:00
(18 hours ago)
(mod_security) mod_security (id:210831) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210831) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 19:00:55.273661 2026] [security2:error] [pid 2891243:tid 2891264] [client 182.113.196.61:43993] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||arthansl.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "arthansl.com"] [uri "/"] [unique_id "amKdJzRnfK5YQ-ibrEdJvAAAABQ"], referer: http://arthansl.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-21 22:04:42
(5 months ago)
(mod_security) mod_security (id:210831) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210831) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 21 17:04:34.888732 2026] [security2:error] [pid 30249:tid 30249] [client 182.113.196.61:41271] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||m.jbaycabs.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "m.jbaycabs.com"] [uri "/"] [unique_id "aZor8in5XNfpoWISxmT-qwAAABY"], referer: https://m.jbaycabs.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 20:30:15
(5 months ago)
(mod_security) mod_security (id:210831) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210831) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 19 15:30:12.281584 2026] [security2:error] [pid 10339:tid 10339] [client 182.113.196.61:39923] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||leagueloch.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "leagueloch.com"] [uri "/"] [unique_id "aZdy1IcUmm1-ARJxsuJDJQAAAAs"], referer: https://leagueloch.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2025-09-23 08:42:18
(10 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-09-18 11:30:52
(10 months ago)
(mod_security) mod_security (id:210350) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 3 ...
show more
(mod_security) mod_security (id:210350) triggered by 182.113.196.61 (hn.kd.ny.adsl): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 18 07:30:46.174297 2025] [security2:error] [pid 31580:tid 31580] [client 182.113.196.61:44015] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.renju.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.renju.net"] [uri "/tournament/2055/game/170674/"] [unique_id "aMvtZpTzEVfhpbj7R0wKiQAAAAo"], referer: https://www.renju.net/tournament/2055/game/170674
show less
Brute-Force
Bad Web Bot
Web App Attack