๐บ๐ธ
TPI-Abuse
2026-03-28 16:18:50
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 28 12:18:44.573360 2026] [security2:error] [pid 15553:tid 15553] [client 185.213.245.99:37085] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||edgecomix.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "edgecomix.com"] [uri "/about"] [unique_id "acf_ZOr_aipa7lKU_Kb-RQAAAAM"], referer: https://edgecomix.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 15:40:35
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 11:40:31.349072 2026] [security2:error] [pid 5115:tid 5115] [client 185.213.245.99:42321] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.desertautoworks.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.desertautoworks.com"] [uri "/"] [unique_id "acak7yyAvfWUb8pI6U32MAAAAAk"], referer: https://www.desertautoworks.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 04:25:23
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 00:25:18.114161 2026] [security2:error] [pid 22791:tid 22791] [client 185.213.245.99:44923] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||edscontracting.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "edscontracting.com"] [uri "/about"] [unique_id "acNjrtxMmGCH03u38SGdOgAAAAE"], referer: https://edscontracting.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 22:59:28
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 18:59:22.828721 2026] [security2:error] [pid 9479:tid 9479] [client 185.213.245.99:43031] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||lockdownclaim.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "lockdownclaim.com"] [uri "/about"] [unique_id "ab8iylUWx5__1H0kTZBOzQAAAA4"], referer: https://lockdownclaim.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-17 23:34:52
(5 months ago)
IM360 WAF: Old style account creation and modification in Joomla! MV:/ru/component/users/
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-17 23:34:52
(5 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 01-34.185.213.245.99.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 01-34.185.213.245.99.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-17 18:46:36
(5 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 20-46.185.213.245.99.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 20-46.185.213.245.99.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-16 18:12:11
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 16 14:12:02.568933 2026] [security2:error] [pid 14086:tid 14086] [client 185.213.245.99:30483] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dmasoftlab.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dmasoftlab.com"] [uri "/who-we-are"] [unique_id "abhH8sZXswRk5u3F254JOQAAAAM"], referer: https://dmasoftlab.com/who-we-are
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-16 13:39:03
(5 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 15-39.185.213.245.99.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 15-39.185.213.245.99.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-16 13:39:03
(5 months ago)
IM360 WAF: Old style account creation and modification in Joomla! MV:/ru/component/users/
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-15 20:21:55
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 15 16:21:46.677415 2026] [security2:error] [pid 1262:tid 1282] [client 185.213.245.99:62465] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||geistmartialarts.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "geistmartialarts.com"] [uri "/company-profile"] [unique_id "abcU2vMV1o0IAgHKRRyDtgAAAIw"], referer: https://geistmartialarts.com/company-profile
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-13 23:19:32
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 13 19:19:22.318114 2026] [security2:error] [pid 14825:tid 14825] [client 185.213.245.99:49541] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||nhgrange.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "nhgrange.org"] [uri "/who-we-are"] [unique_id "abSbelGb35Ns_J7NU6mz3wAAACE"], referer: https://nhgrange.org/who-we-are
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-03-13 07:48:09
(5 months ago)
IM360 WAF: Old style account creation and modification in Joomla! MV:registration
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-11 21:14:56
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 11 17:13:17.422663 2026] [security2:error] [pid 2989:tid 3010] [client 185.213.245.99:28743] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||yourwitch.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "yourwitch.com"] [uri "/contact"] [unique_id "abHa7fG16IWRRyp9L2MfyAAAABA"], referer: https://yourwitch.com/contact
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-10 23:24:58
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.213.245.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 10 19:23:58.765415 2026] [security2:error] [pid 23186:tid 23186] [client 185.213.245.99:45897] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pinebrookdesign.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pinebrookdesign.com"] [uri "/contactus"] [unique_id "abCoDvAWaCytPmKIVlJoqQAAAAA"], referer: https://pinebrookdesign.com/contactus
show less
Brute-Force
Bad Web Bot
Web App Attack