🇺🇸
TPI-Abuse
2026-08-28 08:04:27
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 04:04:21.796327 2026] [security2:error] [pid 9265:tid 9265] [client 2a09:bac5:55fe:1d05::2e4:ab:56952] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||benchmarkbcs.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "benchmarkbcs.com"] [uri "/"] [unique_id "apFBBTh23F1kWnRhzsN00wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 07:10:56
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:10:49.096508 2026] [security2:error] [pid 2517:tid 2517] [client 2a09:bac5:55fe:1d05::2e4:ab:51978] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||sirreelpictures.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "sirreelpictures.com"] [uri "/"] [unique_id "apE0ecgWBxDJ6P7aRvYIkwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-27 18:37:01
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 14:36:57.345223 2026] [security2:error] [pid 2508188:tid 2508208] [client 2a09:bac5:55fe:1d05::2e4:ab:43824] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||wheezer.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "wheezer.org"] [uri "/"] [unique_id "amelSXpR7LUPPPrg87KRegAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-27 17:49:57
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 13:49:53.192737 2026] [security2:error] [pid 481823:tid 481823] [client 2a09:bac5:55fe:1d05::2e4:ab:22492] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||citystreetsalon.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "citystreetsalon.com"] [uri "/"] [unique_id "ameaQX5NIm65egA7gwuJeAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-18 08:52:38
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 04:52:34.696350 2026] [security2:error] [pid 3057011:tid 3057011] [client 2a09:bac5:55fe:1d05::2e4:ab:49016] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||sublimationconsultants.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "sublimationconsultants.com"] [uri "/"] [unique_id "als-0kbnPUyqCi5UrY_BxQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-18 07:57:24
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the ...
show more
(mod_security) mod_security (id:210350) triggered by 2a09:bac5:55fe:1d05::2e4:ab (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 03:57:18.260985 2026] [security2:error] [pid 24837:tid 24837] [client 2a09:bac5:55fe:1d05::2e4:ab:35496] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dadlounge.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dadlounge.com"] [uri "/"] [unique_id "alsx3tp18bI7iDodyK7xOwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Baking333
2026-04-19 09:15:42
(4 months ago)
[redacted] 2a09:bac5:55fe:1d05::2e4:ab - - [19/Apr/2026:10:15:40 +0100] "GET /[redacted]?action=lost ...
show more
[redacted] 2a09:bac5:55fe:1d05::2e4:ab - - [19/Apr/2026:10:15:40 +0100] "GET /[redacted]?action=lostpassword HTTP/1.1" 302 1579 0/63589 "http://[redacted]/[redacted]?action=lostpassword" "Mozilla/5.0 (Linux; Android 13; SM-G998B) AppleWebKit/537.36 Chrome/120.0.0.0 Mobile Safari/537.36" [redacted] 2a09:bac5:55fe:1d05::2e4:ab - - [19/Apr/2026:10:15:40 +0100] "GET / HTTP/1.1" 200 7522 0/74988 "https://[redacted]/[redacted]?action=lostpassword" "Mozilla/5.0 (Linux; Android 13; SM-G998B) AppleWebKit/537.36 Chrome/120.0.0.0 Mobile Safari/537.36"
show less
Bad Web Bot
Web App Attack