๐บ๐ธ
TPI-Abuse
2026-09-28 20:28:49
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 16:28:41.965664 2026] [security2:error] [pid 24230:tid 24230] [client 206.84.80.12:36854] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||portalvasco.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "portalvasco.com"] [uri "/torosno"] [unique_id "arrN-UkWNyknvurv7fwbigAAAAk"], referer: https://antitaurinos-cartagena.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 07:15:55
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 03:15:50.897668 2026] [security2:error] [pid 23215:tid 23215] [client 206.84.80.12:43680] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ageh.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ageh.com"] [uri "/videos"] [unique_id "aroUJkk9hbrBMLxmNlbu6AAAAAE"], referer: https://ageh.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 08:34:12
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 04:34:05.237390 2026] [security2:error] [pid 26538:tid 26538] [client 206.84.80.12:50578] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||modalguitarist.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "modalguitarist.com"] [uri "/"] [unique_id "arjU_UI-D3z5DcaBck5x8QAAABE"], referer: https://websitecheckertool.website/dir/trusted-domain-backlinks-138771
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 07:08:47
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.12 (Dinamic-Somos-206-84-80-12.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 03:08:42.830612 2026] [security2:error] [pid 24723:tid 24723] [client 206.84.80.12:50288] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||kadinisi.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "kadinisi.org"] [uri "/basari-hikayeleri/songul-yuce-otuz-yildir-hayalini-gerceklestiriyor/"] [unique_id "aqedehDlGqV2zB86fBLwmwAAABI"], referer: https://kadinisi.org/basari-hikayeleri/derya-mansuroglu-derya-perde-dikmeye-devam-ediyor
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
้ฌผๅฝฑ233
2026-08-27 10:11:08
(1 month ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
kosada.com
2026-08-26 20:20:50
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2026-08-09 21:24:59
(1 month ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐ฉ๐ช
EGP Abuse Dept
2026-08-06 02:22:07
(1 month ago)
Scraping webshop URLs (www.ngs.nl), likely botnet drone
Bad Web Bot
Exploited Host
๐ฉ๐ช
LRob
2026-08-04 10:32:23
(1 month ago)
CrowdSec: Distributed L7 HTTP flood on WordPress 'The Events Calendar' AJAX endpoints (request_forma ...
show more
CrowdSec: Distributed L7 HTTP flood on WordPress 'The Events Calendar' AJAX endpoints (request_format~json) - DDoS | req: /calendrier-2/action~agenda/time_limit~1764370800/cat_ids~132,188/tag_ids~638,612,223,275,653/request_format~json/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/99.0.4844.51 Safari/537.36
show less
DDoS Attack
Web App Attack
๐บ๐ธ
kosada.com
2026-07-27 19:57:04
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
kosada.com
2026-06-29 11:53:46
(3 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฉ๐ช
Vegascosmetics
2026-06-17 21:31:10
(3 months ago)
(Kingcopy.org-AI-IDS-Report):IP automatically blocked after obfuscated redirect. Vegas Security
DDoS Attack
Hacking
Exploited Host
๐ท๐ธ
Smel
2026-04-23 05:35:34
(5 months ago)
Mail/25/465/587-993/995 Probe, Reject, BadAuth, Hack, SPAM -
Email Spam
Hacking
Brute-Force
๐บ๐ธ
stechusa
2026-03-29 00:00:24
(6 months ago)
ELEVATED_THREAT | 391 IPs targeting /brand.html | URL template shared by 6 IPs: /brand.html?bulb_sha ...
show more
ELEVATED_THREAT | 391 IPs targeting /brand.html | URL template shared by 6 IPs: /brand.html?bulb_shape_type=*&bulb_base=*&bulb_type=*&mode=list&p=* | Facet request during elevated threat (facet_ratio=0.94, unique_ips=683)
show less
Bad Web Bot
DDoS Attack
๐บ๐ธ
kosada.com
2026-03-28 05:32:00
(6 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot