🇺🇸
TPI-Abuse
2026-09-05 02:13:32
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 22:13:24.500798 2026] [security2:error] [pid 6630:tid 6630] [client 183.87.97.221:34059] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||directoryofdogs.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "directoryofdogs.com"] [uri "/australian_terrier.htm"] [unique_id "apt6xLCZ3Ur2EUCrT-sd4gAAAAk"], referer: https://directoryofdogs.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 12:18:30
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:18:22.707039 2026] [security2:error] [pid 16157:tid 16157] [client 183.87.97.221:20350] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dodojuice.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dodojuice.com"] [uri "/msds/pdfs/dodo-juice-wacky-acai-sds-danish.pdf"] [unique_id "apq3DgyOPliefIM5uzLsNAAAAAo"], referer: https://dodojuice.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 11:54:48
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:54:43.601019 2026] [security2:error] [pid 26923:tid 26923] [client 183.87.97.221:28569] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||creartest.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "creartest.com"] [uri "/hacertests-247622-test_mundial_2018.php"] [unique_id "apa9A_mct94Tfu7iAX26vAAAAAo"], referer: https://creartest.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-01 02:58:29
(5 days ago)
[01/Sep/2026:05:58:28 +0300] -- 183.87.97.221 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-c ...
show more
[01/Sep/2026:05:58:28 +0300] -- 183.87.97.221 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-content/uploads/sites/58/2017/06/8-22.pdf HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇫🇷
bigorre.org
2026-08-29 16:59:19
(1 week ago)
unidentified crawl, no bot reference in user agent
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-29 11:39:52
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 07:39:47.008541 2026] [security2:error] [pid 18599:tid 18599] [client 183.87.97.221:60930] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rahmanou.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rahmanou.com"] [uri "/"] [unique_id "apLFA86AGwi8bbjf_r-uEAAAABI"], referer: https://sahammurah.com/all/2391/30.html
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 09:53:50
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 05:53:42.932257 2026] [security2:error] [pid 5310:tid 5310] [client 183.87.97.221:57364] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||usaangelinvestors.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "usaangelinvestors.com"] [uri "/"] [unique_id "apKsJlJ-ZFcjatRrfUHwywAAADg"], referer: https://holgerfeld.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 21:45:18
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 17:45:09.262809 2026] [security2:error] [pid 21813:tid 21813] [client 183.87.97.221:12092] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||apexhumanoidrobots.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "apexhumanoidrobots.com"] [uri "/augment-human-abilities"] [unique_id "apIBZYCnilsrkU5e5Cx-NAAAABo"], referer: https://apexhumanoidrobots.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Jochen Pretli
2026-08-28 17:41:19
(1 week ago)
connection to honeypot
Email Spam
Port Scan
🇺🇸
TPI-Abuse
2026-08-28 11:32:06
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:32:03.506428 2026] [security2:error] [pid 17462:tid 17462] [client 183.87.97.221:35372] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||berntson.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "berntson.org"] [uri "/"] [unique_id "apFxs-KMeUVySyMhZ7qDnQAAABA"], referer: https://uncledspizza.com/all/401/33.html
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 19:35:05
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 15:34:57.729745 2026] [security2:error] [pid 29218:tid 29218] [client 183.87.97.221:13567] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||elizabeth-furlow.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "elizabeth-furlow.com"] [uri "/"] [unique_id "apCRYfg3cUWfw2XjLebMIgAAAAQ"], referer: https://techbumppy.com/all/947/4.html
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
FireGuard Server
2026-08-27 00:15:06
(1 week ago)
Blocked by os-abuseipdb; 5 hits, proto=tcp, ports=443
Port Scan
Hacking
🇺🇸
TPI-Abuse
2026-08-26 13:46:18
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:46:15.531361 2026] [security2:error] [pid 24789:tid 24789] [client 183.87.97.221:50484] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||thedomainevaluator.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "thedomainevaluator.com"] [uri "/tdvt"] [unique_id "ao7uJ-mDMj6uEHLJU-UnWAAAAAo"], referer: https://thedomainevaluator.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-26 07:00:22
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:00:12.637637 2026] [security2:error] [pid 6254:tid 6254] [client 183.87.97.221:42329] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||leeknight.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "leeknight.com"] [uri "/"] [unique_id "ao6O_OjJLBr84FGxRemC7AAAAAI"], referer: https://techbumppy.com/all/1705/2.html
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-26 05:35:23
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.97.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 01:35:18.794564 2026] [security2:error] [pid 3164278:tid 3164331] [client 183.87.97.221:58865] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ward-bergerhouse.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ward-bergerhouse.org"] [uri "/vintage"] [unique_id "ao57FtpHqN4G1ESk5s62SwAAAAc"], referer: https://ward-bergerhouse.org/
show less
Brute-Force
Bad Web Bot
Web App Attack