๐บ๐ธ
TPI-Abuse
2026-10-02 17:37:30
(15 hours ago)
(mod_security) mod_security (id:210350) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 13:37:27.194968 2026] [security2:error] [pid 27884:tid 27884] [client 37.61.116.50:9754] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||envirotreecare.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "envirotreecare.com"] [uri "/"] [unique_id "ar_r17-kpvwyuZEuavlDKQAAABk"], referer: https://linkbuildingoutsourcing.store/dir/organic-visibility-backlinks-65777
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 15:11:40
(17 hours ago)
(mod_security) mod_security (id:210350) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 11:11:34.100392 2026] [security2:error] [pid 1079103:tid 1079103] [client 37.61.116.50:13240] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||karinproctor.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "karinproctor.com"] [uri "/"] [unique_id "ar_Jpp8bo2AmsZzBFocbWwAAAAE"], referer: https://cheapbacklinks.space/dir/backlinks-for-search-ranking-111448
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-09 10:32:52
(3 weeks ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
NetVexor
2026-09-07 14:30:54
(3 weeks ago)
Attack source identified and submitted via NetVexor BGP Blackhole Network
Port Scan
Hacking
Brute-Force
๐บ๐ธ
RAP
2026-09-07 13:36:57
(3 weeks ago)
2026-09-07 13:36:57 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐บ๐ธ
้ฌผๅฝฑ233
2026-08-28 12:51:42
(1 month ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/143.0.0.0 Safari/537.36
show less
Bad Web Bot
๐บ๐ธ
kosada.com
2026-08-27 15:15:26
(1 month ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐บ๐ธ
RAP
2026-08-21 17:46:52
(1 month ago)
2026-08-21 17:46:52 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
๐บ๐ธ
cwytech
2026-08-17 04:47:53
(1 month ago)
Fleet-wide ban from the Ghostfleet ๐ป. Triggered by scenario: cwy/pf-geofence-high.
Hacking
๐ซ๐ท
Entalpi.net
2026-08-16 16:08:18
(1 month ago)
Tried to hit sensible closed port commonly used in attacks
Port Scan
Hacking
Anonymous
2026-08-02 14:30:30
(2 months ago)
denied traffic to a honeypot network. destination port 29378.
Port Scan
Hacking
Anonymous
2026-07-09 08:12:21
(2 months ago)
Unauthorized VPN login attempts
Hacking
Brute-Force
Anonymous
2026-05-22 20:16:25
(4 months ago)
Unauthorized connection to Telnet port 23
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-14 17:07:59
(5 months ago)
(mod_security) mod_security (id:240335) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 14 13:07:51.023279 2026] [security2:error] [pid 2625256:tid 2625256] [client 37.61.116.50:7863] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 37.61.116.50 (+1 hits since last alert)|transcapitalsolutions.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "transcapitalsolutions.com"] [uri "/xmlrpc.php"] [unique_id "ad50Z5DyYyAIO9CZIHorNQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-14 11:01:36
(5 months ago)
(mod_security) mod_security (id:240335) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 37.61.116.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 14 07:01:30.531756 2026] [security2:error] [pid 1420629:tid 1420629] [client 37.61.116.50:8489] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 37.61.116.50 (+1 hits since last alert)|bosdkbook.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "bosdkbook.com"] [uri "/xmlrpc.php"] [unique_id "ad4eivNsVXFoKmoIzEYdLAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack