πΊπΈ
TPI-Abuse
2026-10-03 15:44:56
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosint ...
show more
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 11:44:52.818413 2026] [security2:error] [pid 20239:tid 20239] [client 38.9.221.41:40046] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bronislawsuchanek.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bronislawsuchanek.com"] [uri "/"] [unique_id "asEi9IjlvLYr0wclsgTGjAAAACw"], referer: https://seodofollowlink.website/dir/organic-visibility-backlinks-29577
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 06:30:45
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosint ...
show more
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 02:30:38.245042 2026] [security2:error] [pid 15620:tid 15620] [client 38.9.221.41:49756] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bastardesign.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bastardesign.com"] [uri "/"] [unique_id "ar3-DmMT8k3da29JS1OsjAAAAA8"], referer: https://findmybacklinks.site/dir/custom-link-building-19456
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-26 10:09:53
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosint ...
show more
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 06:09:48.110320 2026] [security2:error] [pid 2251:tid 2251] [client 38.9.221.41:39234] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||hiddenmoosecorners.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "hiddenmoosecorners.com"] [uri "/"] [unique_id "areZ7Pus1WQVXWqkHVtDRgAAAAk"], referer: https://productseochecker.website/dir/manual-seo-backlinks-92315
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-26 04:33:05
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosint ...
show more
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 00:32:59.943305 2026] [security2:error] [pid 22171:tid 22171] [client 38.9.221.41:50902] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.geriterry.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.geriterry.com"] [uri "/"] [unique_id "ardK-zodaYLR-MsYEceQQAAAAAk"], referer: https://bulkbacklinkchecker.site/dir/ranking-focused-backlinks-80583
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-18 13:59:58
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosint ...
show more
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 09:59:52.718428 2026] [security2:error] [pid 3270:tid 3270] [client 38.9.221.41:47208] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||mrobertsignaturehomes.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "mrobertsignaturehomes.com"] [uri "/"] [unique_id "aq1D2Ct6yTFr5iovQjDU_AAAADU"], referer: https://websitedatachecker.shop/dir/results-focused-backlinks-141182
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 16:01:03
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosint ...
show more
(mod_security) mod_security (id:210350) triggered by 38.9.221.41 (Dinamic-Somos-38-9-221-41.somosinternet.co): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 12:00:56.051905 2026] [security2:error] [pid 2911:tid 2911] [client 38.9.221.41:57108] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rachelfia.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rachelfia.com"] [uri "/"] [unique_id "aqwOuNbvI2tK9ok_Lbb0rwAAABY"], referer: https://seobacklinkchecker.shop/dir/backlinks-for-traffic-171250
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
kosada.com
2026-08-03 09:50:28
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
πΊπΈ
kosada.com
2026-07-06 14:05:54
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
Anonymous
2026-04-22 23:00:04
(5 months ago)
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to ...
show more
Distributed web crawl botnet attack (like Mellowtel), likely illicit scraping of AI training data to bypass firewall/robots.txt restrictions in thread-skip.asp
show less
Exploited Host
Bad Web Bot
Anonymous
2025-11-19 08:36:09
(10 months ago)
scanning http requests from known botnet
Web App Attack
Anonymous
2025-11-15 14:52:17
(10 months ago)
scanning http requests from known botnet
Web App Attack