๐บ๐ธ
TPI-Abuse
2026-09-26 05:04:08
(11 hours ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.182 (182.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.182 (182.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 01:04:00.523362 2026] [security2:error] [pid 24784:tid 24797] [client 213.230.78.182:15844] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||vnbcares.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "vnbcares.com"] [uri "/"] [unique_id "ardSQFPra6aBb4A51HqcXQAAAAo"], referer: https://bestdachecker.space/dir/high-dr-backlinks-227469
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kot
2026-09-24 05:03:16
(2 days ago)
scan port 22, 213.230.78.182 block
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-24 03:09:42
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.182 (182.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.182 (182.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:09:34.590069 2026] [security2:error] [pid 17175:tid 17175] [client 213.230.78.182:29570] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||brianaugervideo.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "brianaugervideo.com"] [uri "/"] [unique_id "arSUbiYXmlIDbVr4FpMkIAAAAAM"], referer: https://hipadededoolim.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ญ
Sawasdee
2026-09-21 02:54:12
(5 days ago)
SSH break in attempt
...
SSH
๐บ๐ธ
RAP
2026-09-20 11:25:54
(6 days ago)
2026-09-20 11:25:54 UTC Unauthorized activity to TCP port 22. SSH
SSH
๐ฎ๐ฉ
hermawan
2026-09-19 20:48:05
(6 days ago)
[Sun Sep 20 03:47:56.961984 2026] [security2:error] [pid 120911:tid 140495619614400] [client 213.230 ...
show more
[Sun Sep 20 03:47:56.961984 2026] [security2:error] [pid 120911:tid 140495619614400] [client 213.230.78.182:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:referer. [file "/etc/modsecurity/coreruleset-4.26.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "601"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:referer: https://www.bmkg.go.id/ request_line = GET /index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-iklim HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/informasi-iklim/infografis-iklim/infografis-dasarian/infografis-dasarian-iklim"] [unique_id "aq70_BkpG24uISRwBLoe1QAAANE"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[120972] [+9y4IdwSmQk] [aq70_BkpG24uISRwBLoe1QAAANE] keep_alive=[0] [2026-09-20 03:47:56.961988] [R:aq70_BkpG24uISRwBLoe1QAAANE] UA:'M
...
show less
Email Spam
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-19 03:16:49
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 213.230.78.182 (182.64.uzpak.uz): 1 in the last ...
show more
(mod_security) mod_security (id:210350) triggered by 213.230.78.182 (182.64.uzpak.uz): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 23:16:42.461050 2026] [security2:error] [pid 6451:tid 6451] [client 213.230.78.182:44890] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||drlwr.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "drlwr.com"] [uri "/"] [unique_id "aq3-mpiMZORHL2gilKhQ-wAAAAY"], referer: https://dacheckerwebsite.store/dir/manual-link-building-services-58990
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-15 13:53:39
(1 week ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB repu ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after first-seen suspicion / AbuseIPDB reputation policy (no URL signature). Evidence: Suspicion-Ban (Score 77>=65, Abuse 84, NonEU, first-seen, Change* path)
show less
Hacking
Exploited Host
Web App Attack
๐ฉ๐ช
KPS
2026-09-12 20:19:33
(1 week ago)
PortscanT
Port Scan
๐ซ๐ท
Hiigara
2026-09-12 19:31:16
(1 week ago)
connection attempt : 213.230.78.182 on port : tcp/22 (SSH)
Port Scan
๐บ๐ธ
gui-ying233
2026-09-12 18:54:05
(1 week ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
gui-ying233
2026-09-12 05:20:47
(2 weeks ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/145.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
RAP
2026-09-12 02:23:52
(2 weeks ago)
2026-09-12 02:23:52 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐ซ๐ท
security.rdmc.fr
2026-09-11 05:08:36
(2 weeks ago)
Port Scan Attack proto:TCP src:6113 dst:23
Port Scan
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-10 19:12:20
(2 weeks ago)
Repeated SSH login failures
SSH
Port Scan
Brute-Force