πΊπΈ
TPI-Abuse
2026-03-28 02:01:03
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 22:00:46.785988 2026] [security2:error] [pid 31532:tid 31532] [client 207.170.175.225:32891] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||marionenv.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "marionenv.com"] [uri "/about"] [unique_id "acc2TvVVjSWbMMudB0bmeQAAAAM"], referer: https://marionenv.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-23 01:15:01
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 22 21:14:43.989800 2026] [security2:error] [pid 2697230:tid 2697230] [client 207.170.175.225:58733] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.newmooncafe.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.newmooncafe.com"] [uri "/"] [unique_id "acCUA7fvcCvksFTZdGXqlQAAAAk"], referer: https://www.newmooncafe.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 03:00:40
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 22:56:26.081803 2026] [security2:error] [pid 895:tid 927] [client 207.170.175.225:42523] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.willmanlawfirm.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.willmanlawfirm.com"] [uri "/"] [unique_id "ab4I2gFvu5bOZD5Mv8C21AAAANU"], referer: http://www.willmanlawfirm.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-09 23:55:33
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 09 19:55:16.878511 2026] [security2:error] [pid 27165:tid 27165] [client 207.170.175.225:62815] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||goldcountrygermanamericanclub.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "goldcountrygermanamericanclub.org"] [uri "/our-story"] [unique_id "aa9d5Pwf5qfC2vlvgqs3CAAAABI"], referer: https://goldcountrygermanamericanclub.org/our-story
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-05 12:22:42
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 07:21:23.248103 2026] [security2:error] [pid 3966:tid 3966] [client 207.170.175.225:54809] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||heinsohn.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "heinsohn.com"] [uri "/company-profile"] [unique_id "aal1QwMKRt-YksEQEtRHsQAAAAA"], referer: http://heinsohn.com/company-profile
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-04 16:19:30
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 04 11:19:13.829498 2026] [security2:error] [pid 21784:tid 21784] [client 207.170.175.225:45119] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||thegoldentether.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "thegoldentether.com"] [uri "/contact"] [unique_id "aahbgaaQdv0rkIJsPh__yQAAABw"], referer: https://thegoldentether.com/contact
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-19 11:20:01
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 207.170.175.225 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 19 06:19:48.205744 2026] [security2:error] [pid 25957:tid 25996] [client 207.170.175.225:40697] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||switchbl8.nl|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "switchbl8.nl"] [uri "/"] [unique_id "aZbx1Dp_p1HIpuAv8044DwAAAEA"], referer: https://switchbl8.nl
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Shane mcleroy
2025-04-25 20:44:11
(1 year ago)
Brute Force Password Spray
Brute-Force
π¨π¦
wil.com
2025-04-13 20:21:00
(1 year ago)
GlobalProtect login attempts with user bushojam.
VPN IP
Brute-Force