๐บ๐ธ
TPI-Abuse
2026-10-04 03:27:57
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 190.122.145.99 (customer-static-122.145-99.avcd ...
show more
(mod_security) mod_security (id:210350) triggered by 190.122.145.99 (customer-static-122.145-99.avcdigital.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 23:27:50.229816 2026] [security2:error] [pid 27291:tid 27291] [client 190.122.145.99:39872] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||hazelwerner.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "hazelwerner.com"] [uri "/"] [unique_id "asHHto7K96QdTN164VKLZwAAAAY"], referer: https://linkservices.website/dir/trusted-backlink-services-89993
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
hermawan
2026-10-04 00:36:38
(4 days ago)
Captured JA4H: ge11n_f60e2270bc12 | Log: 190.122.145.99 - - [04/Oct/2026:07:29:37 +0700] "GET /index ...
show more
Captured JA4H: ge11n_f60e2270bc12 | Log: 190.122.145.99 - - [04/Oct/2026:07:29:37 +0700] "GET /index.php/profil/arsip-artikel?catid=478&id=923%3Aprakiraan-cuaca-daerah-malang-dan-batu-seminggu-ke-depan-berlaku-tanggal-15-21-maret-2016&start=10 HTTP/1.1" 403 3738 "-" "Mozilla/5.0 (Linux; Android 15; SM-S911U Build/AP3A.240905.015.A2; ) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/140.0.7339.119 Mobile Safari/537.36 MetaIAB" ge11n_host,x-forwarded-scheme,x-forwarded-proto,x-forwarded-for,x-real-ip,connection,sec-fetch-mode,cf-ew-via,cdn-loop,upgrade-insecure-requests,sec-fetch-user,cf-ray,accept-encoding,accept-language,accept,user-agent,cf-connecting-ip,sec-fetch-site,cf-visitor,save-data,sec-ch-ua,sec-ch-ua-mobile,sec-ch-ua-platform,sec-fetch-dest,cf-ipcountry...
...
show less
Email Spam
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-02 07:42:52
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 190.122.145.99 (customer-static-122.145-99.avcd ...
show more
(mod_security) mod_security (id:210350) triggered by 190.122.145.99 (customer-static-122.145-99.avcdigital.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 03:42:44.463945 2026] [security2:error] [pid 11862:tid 11862] [client 190.122.145.99:51476] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||noxiousthoughts.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "noxiousthoughts.com"] [uri "/"] [unique_id "ar9gdND1iYZ5Oz-sm7xyXgAAAGc"], referer: https://websitelinkgenerator.shop/dir/organic-visibility-backlinks-150677
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 01:48:32
(4 months ago)
(mod_security) mod_security (id:949110) triggered by 190.122.145.99 (customer-static-122.145-99.avcd ...
show more
(mod_security) mod_security (id:949110) triggered by 190.122.145.99 (customer-static-122.145-99.avcdigital.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 21:48:23.152114 2026] [security2:error] [pid 8941:tid 8941] [client 190.122.145.99:34913] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.sunstrongmetal.com"] [uri "/index.html"] [unique_id "af6SZwB6lfig9rB1zvpaKQAAABc"], referer: https://www.google.com/ANd/**/9754=CaST(%27~%27||(SElecT/**/(CaSE/**/WHen/**/(9754=9754)/**/thEN/**/1/**/ElSE/**/0/**/End))::teXt||%27~%27/**/As/**/NUmErIc) AND 1=1-- -
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-01-09 10:21:59
(8 months ago)
Unauthorized connection to Telnet port 23
Port Scan
Anonymous
2025-11-23 06:45:27
(10 months ago)
scanning http requests from known botnet
Web App Attack