๐บ๐ธ
TPI-Abuse
2026-09-30 08:54:07
(17 hours ago)
(mod_security) mod_security (id:210350) triggered by 190.97.232.122 (ip-190-97-232-0.viginet.com.ve) ...
show more
(mod_security) mod_security (id:210350) triggered by 190.97.232.122 (ip-190-97-232-0.viginet.com.ve): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:54:01.982984 2026] [security2:error] [pid 3677:tid 3677] [client 190.97.232.122:60240] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||idahouspsa.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "idahouspsa.com"] [uri "/"] [unique_id "arzOKZo6xMpcT4lWkQyPLAAAAA4"], referer: https://buycheapbacklinks.store/dir/managed-link-building-98057
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:32:38
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 190.97.232.122 (ip-190-97-232-0.viginet.com.ve) ...
show more
(mod_security) mod_security (id:210350) triggered by 190.97.232.122 (ip-190-97-232-0.viginet.com.ve): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:32:30.462165 2026] [security2:error] [pid 5117:tid 5123] [client 190.97.232.122:48579] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||royallawsociety.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "royallawsociety.com"] [uri "/"] [unique_id "arfljhSmKXR4f3bjH8rR_QAAAEQ"], referer: https://royalmanagementsociety.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-08 19:55:25
(3 weeks ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ท๐ธ
Scan
2026-09-05 01:13:55
(3 weeks ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
๐บ๐ธ
ipblock.com
2026-07-24 17:55:00
(2 months ago)
IPBlock protected site ID [4055-d][s=03].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
stechusa
2026-07-11 20:14:48
(2 months ago)
[Askari] | Behavior: Slow-read attack, HTTP/1.1 over TLS, Concurrent page load during attack, Target ...
show more
[Askari] | Behavior: Slow-read attack, HTTP/1.1 over TLS, Concurrent page load during attack, Targeting specific pages, URL template abuse
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
stechusa
2026-07-11 20:14:48
(2 months ago)
ELEVATED_THREAT | 564 IPs targeting /brand.html | URL template shared by 208 IPs: /brand.html?bulb_s ...
show more
ELEVATED_THREAT | 564 IPs targeting /brand.html | URL template shared by 208 IPs: /brand.html?bulb_shape=*&bulb_shape_type=*&bulb_type=*&mode=list&p=* | Facet request during elevated threat (facet_ratio=0.98, unique_ips=823)
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
RAP
2026-05-24 00:23:59
(4 months ago)
2026-05-24 00:23:59 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
Anonymous
2026-02-13 05:09:59
(7 months ago)
scanning http requests from known botnet
Web App Attack
๐ฆ๐บ
MAGIC
2025-12-27 00:18:58
(9 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฎ๐น
VHosting
2025-12-24 04:40:15
(9 months ago)
Detected attack and reported by a human
DDoS Attack
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
๐ฎ๐ฉ
hermawan
2025-11-25 17:40:11
(10 months ago)
[Wed Nov 26 00:39:40.813296 2025] [security2:error] [pid 794033:tid 140675304560320] [client 190.97. ...
show more
[Wed Nov 26 00:39:40.813296 2025] [security2:error] [pid 794033:tid 140675304560320] [client 190.97.232.122:49728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "Brave" at REQUEST_HEADERS:User-Agent. [file "/etc/modsecurity/coreruleset-4.20.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "247"] [id "440000"] [msg "BAD BOT - Detected and Blocked"] [data "Matched Data: Brave found within REQUEST_HEADERS:User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Brave Chrome/80.0.3987.116 Safari/537.36 request_line = GET /index.php/monitoring-hari-tanpa-hujan-berturut-turut/3950-monitoring-hari-tanpa-hujan-berturut-turut-propinsi-jawa-timur/monitoring-hari-tanpa-hujan-berturut-turut-dasarian-provinsi-jawa-timur/monitoring-hari-tanpa-hujan-berturut-turut-dasarian-provinsi-jawa-timur-tahun-2019/555557712-analisis-dasar..."] [severity "NOTICE"] [hostname "staklim-malang.info"] [uri "/index.php/monitoring-hari-tanpa-hujan-bert
...
show less
Hacking
Web App Attack
Anonymous
2025-11-18 13:19:44
(10 months ago)
scanning http requests from known botnet
Web App Attack
Anonymous
2025-07-13 04:30:27
(1 year ago)
Failed login attempt detected by Fail2Ban in recidive jail
Brute-Force
Anonymous
2025-06-18 16:41:03
(1 year ago)
Ports: 143,993; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH