🇪🇸
el-brujo
2026-08-30 11:03:34
(4 days ago)
45.133.170.203 - - [30/Aug/2026:13:03:31 +0200] "GET /student-registration HTTP/1.1" 404 15875 "http ...
show more
45.133.170.203 - - [30/Aug/2026:13:03:31 +0200] "GET /student-registration HTTP/1.1" 404 15875 "https://elhacker.net/geolocalizacion.html?host=booneslandscaping.com" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
45.133.170.203 - - [30/Aug/2026:13:03:32 +0200] "GET /student-registration HTTP/2.0" 404 15875 "https://elhacker.net/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
45.133.170.203 - - [30/Aug/2026:13:03:33 +0200] "POST /student-registration HTTP/2.0" 404 15875 "https://elhacker.net/student-registration" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-13 16:13:48
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 12:13:35.702691 2026] [security2:error] [pid 30776:tid 30776] [client 45.133.170.203:37057] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||hanabritgermanshepherds.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "hanabritgermanshepherds.com"] [uri "/student-registration"] [unique_id "an3tL4f0tNedkMZOSK9WuwAAAAw"], referer: http://hanabritgermanshepherds.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-08-10 03:05:57
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 247
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-08-07 19:11:52
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 15:11:37.565646 2026] [security2:error] [pid 1606:tid 1606] [client 45.133.170.203:48631] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.creertest.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.creertest.com"] [uri "/student-registration"] [unique_id "anYt6Xz-ww_2OEy8iXMnQQAAAAM"], referer: http://www.creertest.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇱🇻
garmtech.com
2026-07-28 08:24:47
(1 month ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-24.45.133.170.203.web-spamm ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 11-24.45.133.170.203.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-07-22 01:24:05
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 21:23:58.057685 2026] [security2:error] [pid 32184:tid 32252] [client 45.133.170.203:62563] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dasperformance.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dasperformance.com"] [uri "/"] [unique_id "amAbrr8Gdbeqqin307VvWwAAAcQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-13 21:52:23
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 17:52:18.296871 2026] [security2:error] [pid 24260:tid 24260] [client 45.133.170.203:60081] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||limpiezadevidriosyoficinas.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "limpiezadevidriosyoficinas.com"] [uri "/"] [unique_id "alVeEiPoCCA8RYgLwDQ1NAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-13 10:44:32
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 06:44:24.601682 2026] [security2:error] [pid 3501:tid 3501] [client 45.133.170.203:40595] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.circleofsound.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.circleofsound.org"] [uri "/"] [unique_id "alTBiBa-4p93xpJeB-I8QgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-25 22:25:23
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 18:25:16.239803 2026] [security2:error] [pid 8813:tid 8847] [client 45.133.170.203:32427] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.northtexaslive.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.northtexaslive.com"] [uri "/venues/"] [unique_id "aj2qzOzfj8kCYpkAUDecFwAAAEU"], referer: http://www.northtexaslive.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-25 18:13:54
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 14:13:50.737976 2026] [security2:error] [pid 7740:tid 7740] [client 45.133.170.203:45013] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||389thbg.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "389thbg.com"] [uri "/index.html"] [unique_id "aj1v3ttd6XiQcsQRYHPYNAAAAAw"], referer: https://389thbg.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-25 11:44:17
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 45.133.170.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 07:44:09.074115 2026] [security2:error] [pid 27274:tid 27274] [client 45.133.170.203:31459] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.cchockeyhistory.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.cchockeyhistory.org"] [uri "/CCIceRinks.htm"] [unique_id "aj0UiQBIDhyZSyPpdXS61wAAAAg"], referer: http://www.cchockeyhistory.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-06-03 21:24:00
(3 months ago)
IPBlock protected site ID [4055-d][s=06].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-06-01 10:26:00
(3 months ago)
IPBlock protected site ID [4055-d][s=06].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-05-30 16:47:00
(3 months ago)
IPBlock protected site ID [4055-d][s=06].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack
🇺🇸
ipblock.com
2026-05-28 21:15:00
(3 months ago)
IPBlock protected site ID [4055-d][s=06].
Persistent 404, vulnerability scanner
Hacking
Bad Web Bot
Web App Attack