🇪🇸
librebit
2026-09-09 05:44:39
(8 hours ago)
Brute force
Brute-Force
🇪🇸
librebit
2026-09-03 05:38:14
(6 days ago)
Brute force
Brute-Force
🇨🇭
backslash
2026-06-19 05:06:14
(2 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
🇺🇸
TPI-Abuse
2026-05-28 16:05:38
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 12:05:32.451910 2026] [security2:error] [pid 10050:tid 10050] [client 185.61.223.152:13807] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||clickableprize.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "clickableprize.com"] [uri "/"] [unique_id "ahhnzMQy8A0OWfP6KrCojwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-03 15:55:13
(4 months ago)
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 11:55:06.090064 2026] [security2:error] [pid 7827:tid 7918] [client 185.61.223.152:10277] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||idwic.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "idwic.com"] [uri "/"] [unique_id "afdv2v05ozQS4Tjltkqu9AAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-01-03 22:48:11
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 03 17:48:03.949841 2026] [security2:error] [pid 15490:tid 15490] [client 185.61.223.152:35099] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||kln.ne.jp|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "kln.ne.jp"] [uri "/"] [unique_id "aVmco9TnzVvYxGeTUIVhWQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-01-03 18:46:45
(8 months ago)
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 185.61.223.152 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 03 13:46:40.238181 2026] [security2:error] [pid 29710:tid 29710] [client 185.61.223.152:27557] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||drrw.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "drrw.net"] [uri "/"] [unique_id "aVlkEPU5GjVD65Q5uhrXDQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Steve
2025-12-24 18:15:00
(8 months ago)
Attempts against non-existent wordpress site
Brute-Force
Web App Attack
Anonymous
2024-08-03 08:06:45
(2 years ago)
Ports: 143,993; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
🇺🇸
TheMadBeaker
2023-08-14 00:37:20
(3 years ago)
Fail2Ban Ban Triggered
HTTP SQL Injection Attempt
Hacking
SQL Injection
🇸🇪
maxxsense
2023-03-11 00:36:54
(3 years ago)
185.61.223.152 (BR/Brazil/-), 6 distributed ftpd attacks on account [redacted]
FTP Brute-Force
Brute-Force
Anonymous
2022-01-08 15:28:56
(4 years ago)
Web App Attack