๐บ๐ธ
TPI-Abuse
2026-10-03 07:32:55
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 03:32:47.154732 2026] [security2:error] [pid 195780:tid 195804] [client 213.230.78.171:47399] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||allstartaxidermy.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "allstartaxidermy.com"] [uri "/"] [unique_id "asCvn_249j8NsuJl7rHb8QAAAVA"], referer: https://web20.website/dir/ranking-boost-backlinks-7137
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-10-01 19:07:59
(3 days ago)
tcp/23 (4 or more attempts)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-30 04:08:46
(5 days ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:08:41.081185 2026] [security2:error] [pid 21853:tid 21853] [client 213.230.78.171:4422] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||limolaketahoe.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "limolaketahoe.com"] [uri "/"] [unique_id "aryLSTaumaT6USwJgQZkRwAAAAY"], referer: https://getfreebacklinks.site/dir/organic-seo-links-122413
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-09-29 16:33:17
(5 days ago)
tcp/22 (4 or more attempts)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-29 15:38:22
(5 days ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 11:38:14.525451 2026] [security2:error] [pid 9749:tid 9749] [client 213.230.78.171:60001] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dougrhodes.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dougrhodes.com"] [uri "/eyes-of-kiinulke"] [unique_id "arvbZoovLK2EBnn3qYs2bgAAABc"], referer: https://dougrhodes.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-28 22:30:06
(6 days ago)
Triggered: repeated knocking on closed ports.
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-28 21:28:16
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 17:28:13.013669 2026] [security2:error] [pid 16202:tid 16202] [client 213.230.78.171:60103] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||deborahbein.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "deborahbein.com"] [uri "/artblog/"] [unique_id "arrb7eQF6qCTJU01_e82GAAAAA4"], referer: https://saqany.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
saamkuu
2026-09-27 05:45:33
(1 week ago)
DDoS botnet: TCP connection flood, 27 connections to port 443.
DDoS Attack
๐ท๐ธ
Scan
2026-09-24 00:38:54
(1 week ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
๐ต๐ฑ
mkey
2026-09-22 18:35:02
(1 week ago)
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS ...
show more
Verified scan activity detected by local IDS/firewall correlation. SCAN: HIGHRISK_SINGLEPORT | PORTS=23 | HITS=2 | IPSET=ADD | FIRST=2026-09-22 20:30:12 | LAST=2026-09-22 20:30:13. Last seen 2026-09-22 20:30:14.
show less
Port Scan
๐จ๐ญ
flaus
2026-09-22 17:33:03
(1 week ago)
$f2bV_matches
Brute-Force
SSH
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-22 10:54:49
(1 week ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-19 07:32:00
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 03:31:56.776415 2026] [security2:error] [pid 30048:tid 30048] [client 213.230.78.171:3266] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||artaria.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "artaria.us"] [uri "/"] [unique_id "aq46bAPbipZyrpYzlHul5wAAAB0"], referer: https://cipherboy.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-09-18 14:38:00
(2 weeks ago)
HTTP DDoS Attack Layer 7
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 01:03:00
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.171 (171.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 21:02:52.887525 2026] [security2:error] [pid 9670:tid 9670] [client 213.230.78.171:33513] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||grexicon.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "grexicon.com"] [uri "/"] [unique_id "aqyNvO93BQVw7Nd3T9sGZQAAAAM"], referer: https://domainmetricschecker.site/dir/seo-backlink-services-86001
show less
Brute-Force
Bad Web Bot
Web App Attack