๐บ๐ธ
TPI-Abuse
2026-09-14 05:38:41
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 01:38:35.066049 2026] [security2:error] [pid 1325:tid 1325] [client 183.87.96.87:52511] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||notforhirellc.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "notforhirellc.com"] [uri "/"] [unique_id "aqeIW8z5ykuBcNlq9fvPsgAAAAE"], referer: https://five.co.in/redirect.php?ref_host=cnsjsailing.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 05:17:12
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 01:17:07.041843 2026] [security2:error] [pid 3144:tid 3144] [client 183.87.96.87:59180] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||cipcug.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "cipcug.org"] [uri "/www.cipcug.org/toe/toe-0311.pdf"] [unique_id "aqeDU4Iv5eOj97CSN6pSQgAAAAE"], referer: https://cipcug.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-14 00:15:31
(3 weeks ago)
WEB attack
Brute-Force
๐ซ๐ท
LRob
2026-09-13 15:30:03
(3 weeks ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /hebergement-web/cloud-prive-nextcloud | 2026-09-13 15:30 UTC
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-13 12:02:41
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 08:02:33.452292 2026] [security2:error] [pid 14381:tid 14381] [client 183.87.96.87:47165] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||cabanaconstructionandpaving.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "cabanaconstructionandpaving.com"] [uri "/"] [unique_id "aqaQ2avKKAZD23DSkTyuOQAAAAI"], referer: https://five.co.in/redirect.php?ref_host=hellomakers.co
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 09:58:50
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 05:58:43.929387 2026] [security2:error] [pid 18987:tid 18987] [client 183.87.96.87:45464] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.proprocessor.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.proprocessor.com"] [uri "/deerprocessingequipment.htm"] [unique_id "aqZz0y226b66VEgfxIZYMQAAABg"], referer: https://five.co.in/redirect.php?ref_host=unisparkles.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 08:51:57
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 04:51:49.689634 2026] [security2:error] [pid 1285:tid 1285] [client 183.87.96.87:22073] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||von-s.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "von-s.com"] [uri "/"] [unique_id "aqZkJXSQsL_6QIhnlZ0q7wAAAAE"], referer: https://five.co.in/redirect.php?ref_host=hamstery.fr
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 16:48:52
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 12:48:46.848868 2026] [security2:error] [pid 22534:tid 22534] [client 183.87.96.87:32263] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bordalo-es.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bordalo-es.com"] [uri "/"] [unique_id "aqWCbs54bHnwCPisLaQ3twAAAJE"], referer: https://elcortadordeesqueletos.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 12:36:36
(4 weeks ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 08:36:30.911441 2026] [security2:error] [pid 9543:tid 9603] [client 183.87.96.87:52424] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||icecc.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "icecc.com"] [uri "/"] [unique_id "aqVHTlTiJRjWBne8J4OlLAAAAZU"], referer: https://royalbusinesscollege.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-11 06:48:01
(4 weeks ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-11 06:48 UTC
show less
Bad Web Bot
๐บ๐ธ
eacontent
2026-09-10 09:16:00
(1 month ago)
[Thu Sep 10 04:19:11.846972 2026] [security2:error] [pid 20397:tid 20421] [client 183.87.96.87:49092 ...
show more
[Thu Sep 10 04:19:11.846972 2026] [security2:error] [pid 20397:tid 20421] [client 183.87.96.87:49092] [client 183.87.96.87] ModSecurity: Warning. Pattern match "\\\\b(keep-alive|close),\\\\s?(keep-alive|close)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "198"] [id "920210"] [rev "2"] [msg "Multiple/Conflicting Connection Header Data Found."] [data "keep-alive, close"] [severity "WARNING"] [ver "OWASP_CRS/3.0.0"] [maturity "6"] [accuracy "8"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "OWASP_CRS/PROTOCOL_VIOLATION/INVALID_HREQ"] [hostname "supplylinedemo.net"] [uri "/pages/socket-head-cap-screws-p2711.html"] [unique_id "aqJn_6OcV3coscLs_9MNCwAAAlY"], referer: https://supplylinedemo.net/
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 18:27:51
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 14:27:47.776029 2026] [security2:error] [pid 10203:tid 10203] [client 183.87.96.87:45357] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||estellenussbaum.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "estellenussbaum.com"] [uri "/html/bc6.html"] [unique_id "apXHo40NekvR9gbR9Rcz3gAAAAw"], referer: https://estellenussbaum.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-31 06:36:09
(1 month ago)
[31/Aug/2026:09:36:09 +0300] -- 183.87.96.87 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-co ...
show more
[31/Aug/2026:09:36:09 +0300] -- 183.87.96.87 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-content/uploads/sites/58/2017/05/20-53.pdf HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 16:09:51
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 12:09:45.477527 2026] [security2:error] [pid 6382:tid 6382] [client 183.87.96.87:48845] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||writebetweenthelines.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "writebetweenthelines.com"] [uri "/narratives/project-greenlight-television-series-review-the-yo-show"] [unique_id "apRVyUYGpI8U6aHxjb1D-AAAAAQ"], referer: https://writebetweenthelines.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 01:43:36
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:43:29.622836 2026] [security2:error] [pid 9213:tid 9213] [client 183.87.96.87:52124] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||alrightletsgo.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "alrightletsgo.com"] [uri "/"] [unique_id "apI5QaWX_P_ZV4rJXinjTQAAABE"], referer: https://thinkingepic.com/
show less
Brute-Force
Bad Web Bot
Web App Attack