๐บ๐ธ
TPI-Abuse
2026-10-03 11:38:15
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 07:38:11.225929 2026] [security2:error] [pid 5925:tid 5925] [client 190.103.29.212:59786] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||kmg365media.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "kmg365media.com"] [uri "/"] [unique_id "asDpI7Fcoxjne7X-OwClAAAAAAU"], referer: https://localcitations.online/dir/niche-link-building-114862
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-03 00:38:42
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 20:38:37.329533 2026] [security2:error] [pid 19568:tid 19568] [client 190.103.29.212:52728] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rockymtnfire.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rockymtnfire.com"] [uri "/"] [unique_id "asBOjbSCGC5IJKKcHOqa9QAAAAU"], referer: https://dabacklinks.store/dir/trusted-link-building-178119
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-02 18:58:50
(2 days ago)
MikroTik Enterprise Honeypot
Port Scan
๐บ๐ธ
TPI-Abuse
2026-10-01 18:19:09
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 14:19:04.929115 2026] [security2:error] [pid 19296:tid 19356] [client 190.103.29.212:55912] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||cmykdesign.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "cmykdesign.com"] [uri "/"] [unique_id "ar6kGOTzfvpZgdZE2bXnXgAAAM4"], referer: https://onlinebacklinkgenerator.shop/dir/expert-link-building-services-41953
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ธ
Scan
2026-10-01 00:23:07
(4 days ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-29 15:01:37
(5 days ago)
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 11:01:32.160292 2026] [security2:error] [pid 31274:tid 31274] [client 190.103.29.212:34308] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||carterrose.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "carterrose.com"] [uri "/"] [unique_id "arvSzLE45D9OuB36w7RZxQAAABQ"], referer: https://bulkbacklinkreport.site/dir/backlinks-for-traffic-34750
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-09-29 12:57:00
(5 days ago)
HTTP DDoS Attack Layer 7
DDoS Attack
๐ต๐ฑ
Kitki30.com
2026-09-29 12:44:55
(5 days ago)
Entered Telnet Tarpit (endlessh, server 1).
Log: 2026-09-29T12:44:55.134Z ACCEPT host=::ffff:190.103 ...
show more
Entered Telnet Tarpit (endlessh, server 1).
Log: 2026-09-29T12:44:55.134Z ACCEPT host=::ffff:190.103.29.212 port=58840 fd=24 n=25/4096
show less
IoT Targeted
Port Scan
Brute-Force
๐ซ๐ท
Tilellit.PRO
2026-09-29 00:59:27
(6 days ago)
WooCommerce YITH AJAX Filder product_cat filter flood attempt with taxonomies
DDoS Attack
Bad Web Bot
๐ฉ๐ช
KPS
2026-09-28 22:58:18
(6 days ago)
PortscanT
Port Scan
๐ฉ๐ช
KPS
2026-09-26 08:08:25
(1 week ago)
PortscanT
Port Scan
๐บ๐ธ
MPL
2026-09-26 06:36:09
(1 week ago)
tcp ports: 22,23 (2 or more attempts)
Port Scan
๐บ๐ธ
RAP
2026-09-26 00:00:54
(1 week ago)
2026-09-26 00:00:54 UTC Unauthorized activity to TCP port 22. SSH
SSH
๐บ๐ธ
TPI-Abuse
2026-09-24 19:18:35
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 190.103.29.212 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 15:18:28.021115 2026] [security2:error] [pid 2431:tid 2431] [client 190.103.29.212:58462] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.wolter-hausser.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.wolter-hausser.com"] [uri "/403.shtml"] [unique_id "arV3hDr5RZqk4-T2ack2agAAABE"], referer: https://wolter-hausser.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
reznekcs
2026-09-21 05:01:54
(2 weeks ago)
Blocked by UFW firewall
Brute-Force