🇺🇸
TPI-Abuse
2026-09-13 00:29:55
(30 minutes ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 20:29:50.609698 2026] [security2:error] [pid 6866:tid 6866] [client 183.87.96.176:13456] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||fgrotary.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "fgrotary.org"] [uri "/mike-ward-community-service-award"] [unique_id "aqXuflo9pzhU9PcNLYpr0AAAAAQ"], referer: https://fgrotary.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 23:59:16
(1 hour ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 19:59:10.039130 2026] [security2:error] [pid 18252:tid 18252] [client 183.87.96.176:60683] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||calstarsfarm.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "calstarsfarm.com"] [uri "/"] [unique_id "aqXnTv6dbKMd1Da_T6T9mAAAABg"], referer: https://five.co.in/redirect.php?ref_host=ideal-module.eu
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 18:01:07
(6 hours ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 14:01:03.364607 2026] [security2:error] [pid 14172:tid 14172] [client 183.87.96.176:28938] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||desoucey.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "desoucey.com"] [uri "/"] [unique_id "aqWTXzL5Q5M5aFNGS5e91gAAAB4"], referer: https://addurl.in/redirect.php?ref_host=themushroomguydenver.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 15:26:34
(9 hours ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 11:26:30.175185 2026] [security2:error] [pid 4073091:tid 4073108] [client 183.87.96.176:15059] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||abusaimeh.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "abusaimeh.com"] [uri "/"] [unique_id "aqVvJsgLAeCPFz2doX4L1wAAAI8"], referer: https://five.co.in/redirect.php?ref_host=fgijk.xyz
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 13:10:58
(11 hours ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 09:10:50.778768 2026] [security2:error] [pid 19571:tid 19571] [client 183.87.96.176:44102] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ardecymusic.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ardecymusic.com"] [uri "/"] [unique_id "aqVPWuCKZJV-aDCkEjfMugAAAAk"], referer: https://five.co.in/redirect.php?ref_host=pilgrimgmc.org
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 09:26:08
(15 hours ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 05:26:04.099427 2026] [security2:error] [pid 9543:tid 9583] [client 183.87.96.176:21910] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||financialcertified.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "financialcertified.com"] [uri "/"] [unique_id "aqUarFTiJRjWBne8J4OQJQAAAYE"], referer: https://americanacademyofprojectmanagement.com/articlea916.html?id=44
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-12 05:58:49
(19 hours ago)
Asking over plain http and never following the redirect served — a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served — a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-12 05:58 UTC
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-12 03:45:34
(21 hours ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 23:45:30.213539 2026] [security2:error] [pid 1119268:tid 1119268] [client 183.87.96.176:15111] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.raumschach.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.raumschach.org"] [uri "/404"] [unique_id "aqTK2uQm7YzeuPvSj5qC7gAAAAw"], referer: https://raumschach.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-11 17:17:22
(1 day ago)
Asking over plain http and never following the redirect served — a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served — a crawler that reads nothing it asks for | method: GET | path: /ouvrages-regie-eauxdupaysdaix | 2026-09-11 17:17 UTC
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-01 15:11:07
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 11:11:01.573137 2026] [security2:error] [pid 9168:tid 9168] [client 183.87.96.176:16740] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||modmove.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "modmove.com"] [uri "/reviews/snowpiercer"] [unique_id "apbrBUyKhu-rOgZ2CzMyGAAAAAE"], referer: https://modmove.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 10:07:06
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:07:00.787603 2026] [security2:error] [pid 24979:tid 24979] [client 183.87.96.176:58878] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||thepartyblock.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "thepartyblock.com"] [uri "/personalized-wedding-favor-boxes.htm"] [unique_id "apajxN664NFge8Oo5ufCygAAAAk"], referer: https://thepartyblock.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 06:54:28
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:54:23.203230 2026] [security2:error] [pid 15992:tid 15992] [client 183.87.96.176:26962] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||westernmassaa.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "westernmassaa.net"] [uri "/meetings/south-street_group_5"] [unique_id "apUlH0pjX9nFOC9Taw07swAAAAU"], referer: https://westernmassaa.net/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-30 14:03:41
(1 week ago)
Web attack
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 15:55:33
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:55:25.631156 2026] [security2:error] [pid 2093:tid 2093] [client 183.87.96.176:58816] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||acctusa.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "acctusa.net"] [uri "/"] [unique_id "apGvbRpoSvdvQ94-CeJr-wAAAAo"], referer: https://hotonlinegaming.com/all/136/24.html
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 15:08:11
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:08:03.326117 2026] [security2:error] [pid 16188:tid 16188] [client 183.87.96.176:32217] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||nmposters.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "nmposters.com"] [uri "/"] [unique_id "apGkU1Uah5-Htk804TMZGgAAABM"], referer: https://betwinnermirror.com/all/2081/2.html
show less
Brute-Force
Bad Web Bot
Web App Attack