๐ณ๐ฑ
homeshowdomain.nl
2026-08-08 21:59:12
(1 month ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-07.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-07 04:37:18
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 00:37:11.024275 2026] [security2:error] [pid 2061219:tid 2061223] [client 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a:50092] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||atlasrecordssearch.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "atlasrecordssearch.com"] [uri "/"] [unique_id "anVg97Ql-AYkE-le94qnHAAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 03:55:12
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 23:55:01.268123 2026] [security2:error] [pid 1645657:tid 1645657] [client 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a:48156] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||achari.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "achari.com"] [uri "/"] [unique_id "anVXFXPLaG7NhXQrgL2yzQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 03:26:43
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 23:26:36.252295 2026] [security2:error] [pid 1885052:tid 1885141] [client 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a:42874] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||aeaus.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "aeaus.com"] [uri "/"] [unique_id "anVQbEE4ch18m_m6Vq_T0wAAAdE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-08-07 03:17:56
(1 month ago)
(mod_security) mod_security triggered on hostname [redacted] 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a ...
show more
(mod_security) mod_security triggered on hostname [redacted] 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): (CF_ENABLE)
show less
SQL Injection
๐ซ๐ท
dynamix
2026-08-07 03:11:38
(1 month ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 03:10:56
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 23:10:48.310211 2026] [security2:error] [pid 3607891:tid 3607891] [client 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a:52394] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||janiros.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "janiros.com"] [uri "/"] [unique_id "anVMuLTeSKebOjyNEtnHCQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-08-07 02:56:21
(1 month ago)
(mod_security) mod_security (id:949110) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:949110) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 02:40:17
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 22:40:14.493214 2026] [security2:error] [pid 884591:tid 884600] [client 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a:37822] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||exede-sales.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "exede-sales.com"] [uri "/"] [unique_id "anVFjpaa5qD-oT5kZulPOwAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-07 02:26:08
(1 month ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 02:12:35
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 22:12:21.127934 2026] [security2:error] [pid 1409439:tid 1409439] [client 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a:47892] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||jessiedavison.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "jessiedavison.com"] [uri "/"] [unique_id "anU_BT-ZRAouNqC9Znzr9gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-07 02:05:00
(1 month ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-06 17:00:06
(1 month ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-06 16:27:12
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknow ...
show more
(mod_security) mod_security (id:210350) triggered by 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 06 12:27:06.500305 2026] [security2:error] [pid 619227:tid 619227] [client 2a0a:4cc0:2000:7ba4:e49e:48ff:fe6e:bd2a:52138] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||1cdn.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "1cdn.com"] [uri "/"] [unique_id "anS12mEsKBGR2hkNL46ZiQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack