๐บ๐ธ
TPI-Abuse
2026-10-04 12:26:40
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 08:26:34.638818 2026] [security2:error] [pid 31476:tid 31476] [client 206.84.80.18:49426] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||deepseasugar.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "deepseasugar.com"] [uri "/"] [unique_id "asJF-uFBp4w72XTSe-9QFQAAAAc"], referer: https://buycheapbacklinks.shop/dir/seo-visibility-links-52278
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 07:02:04
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 03:01:58.792547 2026] [security2:error] [pid 22578:tid 22578] [client 206.84.80.18:52328] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||mhebert.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "mhebert.com"] [uri "/"] [unique_id "asH55hunKrOCC4sELsUVOgAAAAE"], referer: https://backlinkautomationsoftware.site/dir/trusted-backlink-services-135593
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 18:10:30
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 14:10:23.949608 2026] [security2:error] [pid 12886:tid 12886] [client 206.84.80.18:43513] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||firstlovedevotions.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "firstlovedevotions.com"] [uri "/"] [unique_id "ar_zj6l0Xxg8bo8WU6PDhgAAAAo"], referer: https://goodbacklinksforseo.online/dir/link-outreach-services-72989
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 18:54:14
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 14:54:07.190949 2026] [security2:error] [pid 15879:tid 15879] [client 206.84.80.18:42696] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||virginians.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "virginians.com"] [uri "/"] [unique_id "ar6sT1XylukCthZZrB0-3QAAAAo"], referer: https://naturalbacklink.online/dir/trusted-backlink-services-226593
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 14:15:05
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:14:57.733178 2026] [security2:error] [pid 19224:tid 19224] [client 206.84.80.18:46436] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||thisisaboutscience.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "thisisaboutscience.com"] [uri "/"] [unique_id "ar5q4dD_chDuUZa_okzmDAAAABQ"], referer: https://highqualitylinkbuilding.site/dir/trusted-seo-backlinks-212704
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 18:28:41
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 14:28:34.064214 2026] [security2:error] [pid 31766:tid 31766] [client 206.84.80.18:54598] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||joesteiner.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "joesteiner.com"] [uri "/"] [unique_id "arwDUgZXH0Cq0oEZh8R3TwAAAAU"], referer: https://bestbacklinkschecker.online/dir/trusted-domain-backlinks-107871
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 03:39:02
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 23:38:57.379474 2026] [security2:error] [pid 26864:tid 26864] [client 206.84.80.18:41010] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||webuydinwiddiehouses.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "webuydinwiddiehouses.com"] [uri "/"] [unique_id "arc-UXqLbU4qYjtnkbISPgAAABk"], referer: https://bulkpachecker.shop/dir/backlinks-for-ranking-230312
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 11:09:04
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 07:08:59.212380 2026] [security2:error] [pid 19793:tid 19793] [client 206.84.80.18:52290] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||braleygroup.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "braleygroup.com"] [uri "/"] [unique_id "aq--y5I3kvL7e7t1SCZNZQAAAAg"], referer: https://backlinkspace.com/dir/trusted-link-building-28419
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 01:59:42
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 21:59:39.525041 2026] [security2:error] [pid 17997:tid 17997] [client 206.84.80.18:42446] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||jazzycatty.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "jazzycatty.com"] [uri "/"] [unique_id "aqtJi0Fz4Rzrdk8GgxtulQAAAC4"], referer: https://backlinkfindertool.online/dir/advanced-link-building-105432
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 00:01:26
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.80.18 (Dinamic-Somos-206-84-80-18.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 20:01:22.409830 2026] [security2:error] [pid 24523:tid 24523] [client 206.84.80.18:38882] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||mrbaystreet.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "mrbaystreet.com"] [uri "/"] [unique_id "aqst0vo4kmgp4TsA1N44_wAAAAI"], referer: https://seopagerankchecker.website/dir/seo-outreach-backlinks-141058
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-16 19:07:44
(3 weeks ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ซ๐ท
Sklurk
2026-08-23 11:58:47
(1 month ago)
Web App Attack
Web App Attack
๐บ๐ธ
้ฌผๅฝฑ233
2026-08-23 06:03:28
(1 month ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
show less
Bad Web Bot
Anonymous
2026-08-18 07:24:22
(1 month ago)
Distributed scraper residential proxy pool โ www.publicprinceton.com /store/filtered/ (WineCommerce ...
show more
Distributed scraper residential proxy pool โ www.publicprinceton.com /store/filtered/ (WineCommerce WAF)
show less
DDoS Attack
Bad Web Bot
Exploited Host
๐ฉ๐ช
LRob
2026-08-05 04:08:28
(2 months ago)
CrowdSec: Distributed L7 HTTP flood on WordPress 'The Events Calendar' AJAX endpoints (request_forma ...
show more
CrowdSec: Distributed L7 HTTP flood on WordPress 'The Events Calendar' AJAX endpoints (request_format~json) - DDoS | req: /calendrier-2/action~agenda/time_limit~1764370800/cat_ids~630,155,130/tag_ids~420,615,310,628,438,332/request_format~json/ | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/110.0.0.0 Safari/537.36
show less
DDoS Attack
Web App Attack