๐บ๐ธ
TPI-Abuse
2025-12-28 17:38:18
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 212.119.41.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 212.119.41.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 12:38:15.029051 2025] [security2:error] [pid 30039:tid 30039] [client 212.119.41.110:33631] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||printednapkins.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "printednapkins.com"] [uri "/"] [unique_id "aVFrB34lvkFTZQOXeEl68gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-21 20:17:10
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 212.119.41.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 212.119.41.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 21 15:17:04.200446 2025] [security2:error] [pid 26564:tid 26564] [client 212.119.41.110:37481] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.powerastronomy.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.powerastronomy.com"] [uri "/Runequest/doku.php"] [unique_id "aUhVwAaiXUBvqIcUrkYHaAAAAAc"], referer: http://www.powerastronomy.com/Runequest/doku.php?id=cat888_bet&do=register
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-09-24 11:16:34
(8 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐ฎ๐ฉ
Burayot
2025-08-20 20:40:26
(9 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 212.119.41.110 (IL/Israel/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 212.119.41.110 (IL/Israel/-): 1 in the last 3600 secs
show less
Web App Attack
๐ต๐ฑ
Niko's Stuff
2025-08-15 12:13:31
(9 months ago)
[1x] F2B | Suspicious activity blocked on: ufw | BanTime: 604800s | Suspicious TCP packet from 212.1 ...
show more
[1x] F2B | Suspicious activity blocked on: ufw | BanTime: 604800s | Suspicious TCP packet from 212.119.41.110:39623 โ port 80 | TTL: 116, LEN: 52, TOS: 0x08, PREC: 0x20, Interface: eth0
show less
Port Scan
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2024-11-24 22:30:42
(1 year ago)
WP Login Scan Activities
Web App Attack
๐ง๐ช
Martain
2023-12-09 20:55:14
(2 years ago)
unauthorized VPN access attempt (user: vistatech)
Hacking
Brute-Force
๐บ๐ธ
WhiteFireOCN1
2023-05-23 20:28:55
(3 years ago)
Targeted credential stuffing attack, observed 2023-05-23T06:38:03. Part of an attack that included 1 ...
show more
Targeted credential stuffing attack, observed 2023-05-23T06:38:03. Part of an attack that included 130 logins from 121 IPs. Likely being used as a proxy/tor exit node.
show less
Hacking
Brute-Force
Exploited Host
๐จ๐ญ
backslash
2020-12-11 04:53:04
(5 years ago)
Brute-Force