🇺🇸
TPI-Abuse
2026-09-01 21:03:13
(14 hours ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:03:06.982908 2026] [security2:error] [pid 5907:tid 5907] [client 206.232.2.93:41015] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||capitalswisscorp.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "capitalswisscorp.com"] [uri "/mailto:[email protected] "] [unique_id "apc9ivX8TGuT41ZbnP3j6QAAAAY"], referer: http://CapitalSwissCorp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-04 11:47:08
(4 weeks ago)
FortiWeb WAF: 28 attacks detected. Threat Score: 10408530. Types: Client Management(14), Signature D ...
show more
FortiWeb WAF: 28 attacks detected. Threat Score: 10408530. Types: Client Management(14), Signature Detection(14). Origin: United States.
show less
Web App Attack
Anonymous
2026-07-22 03:34:12
(1 month ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-06-14 17:03:50
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 13:03:44.679967 2026] [security2:error] [pid 30011:tid 30011] [client 206.232.2.93:33547] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||americanexportimport.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "americanexportimport.com"] [uri "/mailto:[email protected] "] [unique_id "ai7e8NOCDLImZplh38E3qQAAAAA"], referer: http://americanexportimport.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
dtorrer
2026-06-02 00:35:01
(3 months ago)
Client attempted to submit spam on a website post.
Blog Spam
🇱🇻
garmtech.com
2026-05-18 03:10:23
(3 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:06-10.206.232.2.93
Web App Attack
🇬🇧
Steve
2026-05-01 10:04:03
(4 months ago)
Forum Spam
Web Spam
🇺🇸
TPI-Abuse
2026-04-13 02:08:30
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 12 22:08:24.556002 2026] [security2:error] [pid 1908839:tid 1908839] [client 206.232.2.93:51755] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.CapitalSwissCorp.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.capitalswisscorp.com"] [uri "/mailto:[email protected] "] [unique_id "adxQGJEDdn4Q3njTTz48LgAAABY"], referer: http://www.CapitalSwissCorp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-31 10:08:56
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 06:08:50.386718 2026] [security2:error] [pid 14020:tid 14020] [client 206.232.2.93:34355] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||xyncom.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "xyncom.com"] [uri "/contact-us/"] [unique_id "acudMh6X3xfnz__B-_UUBAAAAAU"], referer: https://xyncom.com/contact-us/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-28 17:56:55
(5 months ago)
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 28 13:56:48.758629 2026] [security2:error] [pid 17101:tid 17101] [client 206.232.2.93:56711] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.capitalswisscorp.com:80|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.capitalswisscorp.com"] [uri "/mailto:[email protected] "] [unique_id "acgWYNSMWuTKCOqWLJK1rwAAABU"], referer: http://www.capitalswisscorp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-26 05:57:44
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 01:57:22.482561 2026] [security2:error] [pid 21759:tid 21759] [client 206.232.2.93:50657] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||miroconsulting.es|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "miroconsulting.es"] [uri "/about"] [unique_id "acTKwgqcDOCz9DI4EeXRnAAAAB0"], referer: https://miroconsulting.es/about
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-25 02:55:40
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 24 22:55:33.847885 2026] [security2:error] [pid 11409:tid 11409] [client 206.232.2.93:37577] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||beirutbazar.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "beirutbazar.com"] [uri "/about-us/"] [unique_id "acNOpfzqTCOQ-qINLrjd3AAAABo"], referer: https://beirutbazar.com/about-us/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-18 02:55:18
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 17 22:55:00.219770 2026] [security2:error] [pid 1428:tid 1428] [client 206.232.2.93:33225] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||coalminer.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "coalminer.com"] [uri "/aboutus"] [unique_id "aboUBNArjl33DHyMZTUlYQAAAAo"], referer: https://coalminer.com/aboutus
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-16 09:17:12
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 16 05:17:08.948211 2026] [security2:error] [pid 11453:tid 11453] [client 206.232.2.93:36803] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||maldivesautismcentre.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "maldivesautismcentre.org"] [uri "/faq"] [unique_id "abfKlABOJIO4_Ja9Ei5yPAAAAAs"], referer: http://maldivesautismcentre.org/faq
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-03-13 04:42:40
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 206.232.2.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 13 00:42:28.487113 2026] [security2:error] [pid 15588:tid 15588] [client 206.232.2.93:58987] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||deannlottmusic.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "deannlottmusic.com"] [uri "/aboutus"] [unique_id "abOVtNk7bJ3fNJy0-0G21wAAAAE"], referer: https://deannlottmusic.com/aboutus
show less
Brute-Force
Bad Web Bot
Web App Attack