๐บ๐ธ
TPI-Abuse
2026-10-03 04:12:00
(6 hours ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 00:11:57.372911 2026] [security2:error] [pid 28405:tid 28405] [client 206.84.81.45:32908] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||mmaccaux.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "mmaccaux.com"] [uri "/"] [unique_id "asCAjWHQAgNa2gxPvFdZuQAAAA8"], referer: https://buylink.space/dir/ethical-seo-backlinks-138333
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
MatStef132
2026-09-30 17:51:25
(2 days ago)
MatShield L7: blocked on fivevault.net (sec-fetch-referer-contradiction)
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 13:26:26
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 09:26:18.162724 2026] [security2:error] [pid 16045:tid 16045] [client 206.84.81.45:34808] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||goldeys.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "goldeys.com"] [uri "/"] [unique_id "ar0N-oNtQhWfU8guxB29-QAAAAQ"], referer: https://findbacklinksofcompetitors.space/dir/quality-link-building-83809
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 09:56:07
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:55:59.230218 2026] [security2:error] [pid 20821:tid 20821] [client 206.84.81.45:49226] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||roguetechhub.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "roguetechhub.com"] [uri "/"] [unique_id "arzcr2hS239184Kb2l5QrgAAAAA"], referer: https://automaticbacklinkmaker.shop/dir/expert-link-building-services-178253
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 07:52:43
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 03:52:37.123979 2026] [security2:error] [pid 15158:tid 15158] [client 206.84.81.45:37052] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||gotdt.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "gotdt.com"] [uri "/"] [unique_id "ary_xVoLSaJ_1WICIA-rdwAAACQ"], referer: https://onlinebacklinkgenerator.shop/dir/professional-backlink-building-84554
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-09-29 12:57:59
(3 days ago)
DDoS Attack Layer 7
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-09-19 10:32:26
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 06:32:19.452074 2026] [security2:error] [pid 621:tid 621] [client 206.84.81.45:47028] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||daveware.net|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "daveware.net"] [uri "/wp-mail.php"] [unique_id "aq5ksxjBBvj4zci0PjFilwAAABU"], referer: https://daveware.net/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 19:52:33
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 15:52:28.258877 2026] [security2:error] [pid 26513:tid 26513] [client 206.84.81.45:38364] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||grapplerunion.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "grapplerunion.com"] [uri "/"] [unique_id "aqrzfPsP75hTSdzDWdYuSwAAAAs"], referer: https://dapacheckertools.website/dir/contextual-seo-backlinks-85317
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 22:58:36
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosi ...
show more
(mod_security) mod_security (id:210350) triggered by 206.84.81.45 (Dinamic-Somos-206-84-81-45.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 18:58:27.970292 2026] [security2:error] [pid 19302:tid 19302] [client 206.84.81.45:52060] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||beautyradio.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "beautyradio.com"] [uri "/"] [unique_id "aqnNk5z-uMyUxtcijVDFmAAAAAU"], referer: https://paullevinson.blogspot.com/2007/08/my-tues-night-manhattan-talk-about-ron.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-07-26 07:15:17
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐จ๐ฆ
polycoda
2026-04-18 12:34:11
(5 months ago)
๐ฅถ Part of massive botnet scraping campaign that nearly turned into a DDoS on 2025-11-27
DDoS Attack