๐บ๐ธ
TPI-Abuse
2026-09-16 19:34:06
(6 hours ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.181 (Dinamic-Somos-206-84-81-181.somo ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.181 (Dinamic-Somos-206-84-81-181.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 15:34:01.001528 2026] [security2:error] [pid 9271:tid 9271] [client 206.84.81.181:55406] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ilikeabe.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ilikeabe.com"] [uri "/"] [unique_id "aqrvKBLSWtxmZrHm028sXgAAAAI"], referer: https://findbacklinks.store/dir/white-hat-backlinks-98905
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Sklurk
2026-09-16 00:48:15
(1 day ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:19:47
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.181 (Dinamic-Somos-206-84-81-181.somo ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.181 (Dinamic-Somos-206-84-81-181.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:19:44.275305 2026] [security2:error] [pid 15671:tid 15671] [client 206.84.81.181:46418] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||davesullivan.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "davesullivan.net"] [uri "/"] [unique_id "aqmaUEr2PafQdpSzrBa4bwAAABg"], referer: https://davesullivantheillustrator.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 02:45:51
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.181 (Dinamic-Somos-206-84-81-181.somo ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.181 (Dinamic-Somos-206-84-81-181.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 22:45:47.741477 2026] [security2:error] [pid 7744:tid 7744] [client 206.84.81.181:42904] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||aes-nihil.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "aes-nihil.com"] [uri "/"] [unique_id "aqixW11JcNsfodaoPpibYwAAAAI"], referer: https://saintperle.blogspot.com/2012/07
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-08-27 17:46:07
(2 weeks ago)
HTTP DDoS Attack Layer 7
DDoS Attack
๐ฉ๐ช
LRob
2026-08-19 00:36:15
(4 weeks ago)
L7 DDoS: distributed flood on a shop's faceted search โ automated requests to search/sort URLs, one ...
show more
L7 DDoS: distributed flood on a shop's faceted search โ automated requests to search/sort URLs, one or two per address from thousands of addresses, no page assets loaded | path: /18-velo-route | query: q=Disponibilit%C3%A9-En+stock%2FCat%C3%A9gories-V%C3%A9lo+route+Performance%2FStock+magasin-Cycling+H%C3%A9nin%5C-Beaumont&resul
show less
DDoS Attack
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-07-07 02:32:14
(2 months ago)
Scraping webshop URLs (www.vdkennisbank.nl), likely botnet drone
Bad Web Bot
Exploited Host
๐บ๐ธ
kosada.com
2026-06-29 10:32:10
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐ฎ๐น
A000Z
2026-06-16 08:22:25
(3 months ago)
Fail2Ban: 206.84.81.181 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5. ...
show more
Fail2Ban: 206.84.81.181 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (iPhone; CPU iPhone OS 11_0 like Mac OS X) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/46.0.6538.1886 Mobile Safari/537.36
show less
Bad Web Bot
๐ฎ๐น
A000Z
2026-06-15 07:26:10
(3 months ago)
Fail2Ban: 206.84.81.181 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5. ...
show more
Fail2Ban: 206.84.81.181 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: Mozilla/5.0 (iPhone; CPU iPhone OS 11_0 like Mac OS X) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/46.0.6538.1886 Mobile Safari/537.36
show less
Bad Web Bot
๐ฉ๐ช
Inamin
2026-05-30 04:37:19
(3 months ago)
206.84.81.181 - - [30/May/2026:02:47:30 +0800] "GET /index.php?from=20260505000010&hidebots=0&hidemi ...
show more
206.84.81.181 - - [30/May/2026:02:47:30 +0800] "GET /index.php?from=20260505000010&hidebots=0&hideminor=1&limit=250&target=%E4%B8%89%E8%88%B9%E6%A0%9E%E5%AD%90&title=%E7%89%B9%E6%AE%8A%3A%E5%B7%B2%E9%80%A3%E7%B5%90%E7%9A%84%E6%9C%80%E8%BF%91%E8%AE%8A%E6%9B%B4&userExpLevel=unregistered HTTP/2.0" 404 56603 "-" "Mozilla/5.0 (compatible; MSIE 6.0; Windows NT 5.2; Trident/5.0)"
206.84.81.181 - - [30/May/2026:12:37:19 +0800] "GET /index.php?from=20260509192836&hidebots=0&hideliu=1&hideminor=1&hidemyself=1&limit=250&title=%E7%89%B9%E6%AE%8A%3A%E8%BF%91%E6%9C%9F%E8%AE%8A%E5%8B%95 HTTP/2.0" 302 0 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1) AppleWebKit/534.36.1 (KHTML, like Gecko) Version/4.1 Safari/534.36.1"
...
show less
Brute-Force
๐ซ๐ท
Sklurk
2026-03-24 02:48:09
(5 months ago)
Web App Attack
Web App Attack