๐บ๐ธ
TPI-Abuse
2026-06-11 23:58:59
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 19:58:52.253817 2026] [security2:error] [pid 26589:tid 26589] [client 206.232.2.50:35857] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||holgerfeld.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "holgerfeld.com"] [uri "/mailto:[email protected] "] [unique_id "aitLvOtRjXcD-5Zvwoco-gAAAAs"], referer: http://holgerfeld.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-18 18:40:32
(3 weeks ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:21-40.206.232.2.50
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-08 06:29:34
(1 month ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 09-29.206.232.2.50.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 09-29.206.232.2.50.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฑ๐ป
garmtech.com
2026-04-24 05:07:07
(1 month ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 08-07.206.232.2.50.web-spammer ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 08-07.206.232.2.50.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐ฆ๐บ
MAGIC
2026-04-09 00:19:40
(2 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-01 09:37:38
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 05:37:30.815393 2026] [security2:error] [pid 11062:tid 11062] [client 206.232.2.50:42097] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||john-bell-associates.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "john-bell-associates.com"] [uri "/our-story"] [unique_id "acznWj7YLqCZUhdQwk3svgAAAAM"], referer: https://john-bell-associates.com/our-story
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 12:50:15
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 08:49:16.115000 2026] [security2:error] [pid 27071:tid 27088] [client 206.232.2.50:42893] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||a2zlns.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "a2zlns.com"] [uri "/aboutus"] [unique_id "acpxTDU0dnqUViPTmvagfQAAAAw"], referer: https://a2zlns.com/aboutus
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 09:43:24
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 05:43:18.262768 2026] [security2:error] [pid 21460:tid 21487] [client 206.232.2.50:62033] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||crowns.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "crowns.org"] [uri "/about-us"] [unique_id "acj0Non2RxCZABdNR3T4TAAAAAk"], referer: https://crowns.org/about-us
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-28 22:38:18
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 28 18:38:08.046776 2026] [security2:error] [pid 27884:tid 27884] [client 206.232.2.50:56397] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||huboon.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "huboon.com"] [uri "/aboutus"] [unique_id "achYUCkDsCuhq2Fl26RtVQAAAAA"], referer: https://huboon.com/aboutus
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-16 11:02:06
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 16 07:01:53.094989 2026] [security2:error] [pid 29875:tid 29875] [client 206.232.2.50:29709] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||expresstires.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "expresstires.us"] [uri "/company"] [unique_id "abfjIcHCc3ZD29xn6vqjzQAAAAk"], referer: https://expresstires.us/company
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 10:26:44
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 06:26:41.149105 2026] [security2:error] [pid 31482:tid 31482] [client 206.232.2.50:56335] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||poulsoncustomhomes.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "poulsoncustomhomes.com"] [uri "/company-profile"] [unique_id "abU34bwbMeqOEoesRdpPngAAAB8"], referer: https://poulsoncustomhomes.com/company-profile
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-11 02:36:49
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 10 22:36:45.067600 2026] [security2:error] [pid 20316:tid 20316] [client 206.232.2.50:31857] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.mariedjones.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.mariedjones.com"] [uri "/wordpress/1111-the-time-prompt"] [unique_id "abDVPXTr8nO2hpGjFxCIcwAAAAA"], referer: https://www.mariedjones.com/wordpress/1111-the-time-prompt
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-03-06 15:30:04
(3 months ago)
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-02-26 22:23:43
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 17:23:28.771781 2026] [security2:error] [pid 12597:tid 12597] [client 206.232.2.50:30265] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||kirbysheetmetalworks.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "kirbysheetmetalworks.com"] [uri "/about"] [unique_id "aaDH4JTlBaxMS86wQ8aCagAAABI"], referer: https://kirbysheetmetalworks.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 22:14:05
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 17:14:00.479798 2026] [security2:error] [pid 7807:tid 7807] [client 206.232.2.50:42509] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||InvestorsFundingUSA.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "investorsfundingusa.com"] [uri "/mailto:[email protected] "] [unique_id "aYz_KDH_seb_uyd3HINJWAAAAAQ"], referer: http://InvestorsFundingUSA.com
show less
Brute-Force
Bad Web Bot
Web App Attack