๐บ๐ธ
TPI-Abuse
2026-09-27 13:37:00
(3 hours ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 09:36:53.156018 2026] [security2:error] [pid 22402:tid 22402] [client 188.132.249.100:54518] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||hierrosbernal.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "hierrosbernal.com"] [uri "/"] [unique_id "arkb9Z_tNpnBxHeYDW6pUwAAAAU"], referer: https://drcheckerbulk.store/dir/editorial-link-building-92360
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 11:19:12
(5 hours ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 07:19:06.637201 2026] [security2:error] [pid 13892:tid 13899] [client 188.132.249.100:22749] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||yubasutterphotographer.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "yubasutterphotographer.com"] [uri "/"] [unique_id "arj7qvrvH1GdGbytPTSnDgAAAEU"], referer: https://dppachecker.store/dir/natural-seo-backlinks-240434
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 12:46:20
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 08:46:14.535507 2026] [security2:error] [pid 31935:tid 31963] [client 188.132.249.100:3382] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||icecc.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "icecc.com"] [uri "/"] [unique_id "are-lsH5LnVKu-v5Fs4yRQAAARg"], referer: https://royallawsociety.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 10:08:06
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 06:08:00.445495 2026] [security2:error] [pid 7838:tid 7838] [client 188.132.249.100:40898] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.applemaccomputerconsulting.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.applemaccomputerconsulting.com"] [uri "/"] [unique_id "areZgKpaXrYB2_SXGW6iIAAAAAY"], referer: https://pagerankchecker.store/dir/niche-link-building-11562
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 08:53:32
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 04:53:22.824942 2026] [security2:error] [pid 7808:tid 7808] [client 188.132.249.100:46394] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dance4ovations.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dance4ovations.com"] [uri "/"] [unique_id "areIAt7eWPRs-giyrc8khwAAAAw"], referer: https://seofriendlychecker.store/dir/high-dr-backlinks-50169
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-24 01:07:03
(3 days ago)
Scraping webshop URLs (www.elliptigobenelux.com), likely botnet drone
Bad Web Bot
Exploited Host
๐ช๐ธ
librebit
2026-09-22 02:22:31
(5 days ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-21 18:06:04
(5 days ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 14:05:55.473947 2026] [security2:error] [pid 25042:tid 25042] [client 188.132.249.100:42472] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||jimrichardart.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "jimrichardart.com"] [uri "/collages-2022-2023/"] [unique_id "arFyA1619LaOYRgrNdj-9wAAABE"], referer: https://jimrichardart.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-20 09:05:09
(1 week ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nest ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after deep/obfuscated attack (encoding nesting / CPU-drain risk). Evidence: High Priority: %25252F
show less
Hacking
Exploited Host
Web App Attack
๐ช๐ธ
el-brujo
2026-09-18 14:38:00
(1 week ago)
HTTP DDoS Attack Layer 7
DDoS Attack
๐ฉ๐ช
LRob
2026-09-18 14:20:23
(1 week ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /privacy-policy/tel:5012760688 ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /privacy-policy/tel:5012760688 | ua: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36 | 2026-09-18 14:20 UTC
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 12:50:34
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 08:50:27.921368 2026] [security2:error] [pid 31209:tid 31224] [client 188.132.249.100:53878] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||antidote-it.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "antidote-it.com"] [uri "/"] [unique_id "aq0zk8GahgHRcNfC6TAyEQAAAEw"], referer: https://bulkdacheckeronline.online/dir/outreach-link-building-10659
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-18 04:44:44
(1 week ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-17 15:11:42
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 188.132.249.100 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 11:11:34.198218 2026] [security2:error] [pid 12409:tid 12409] [client 188.132.249.100:21331] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||noxiousthoughts.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "noxiousthoughts.com"] [uri "/"] [unique_id "aqwDJkNnBetQsdGe75n9VwAAABY"], referer: https://backlinkfinder.website/dir/organic-visibility-backlinks-150677
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
saamkuu
2026-09-17 05:49:48
(1 week ago)
DDoS botnet: TCP connection flood, 60 connections to port 443.
DDoS Attack