๐ฉ๐ช
Reinhard
2026-07-25 17:44:45
(2 days ago)
Harvesting pictures or malicious BOT.
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-24 04:53:26
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 00:53:16.927055 2026] [security2:error] [pid 3989800:tid 3989800] [client 45.78.207.165:57242] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||carpentersbattery.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "carpentersbattery.org"] [uri "/pictures-2004 109.jpg"] [unique_id "amLvvH9-niwfEVsxXI9dEQAAABY"], referer: http://carpentersbattery.org
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-26 09:20:47
(3 months ago)
FortiWeb WAF: 102 attacks detected. Threat Score: 14200. Types: Client Management(51), GEO IP(51). O ...
show more
FortiWeb WAF: 102 attacks detected. Threat Score: 14200. Types: Client Management(51), GEO IP(51). Origin: Singapore.
show less
Web App Attack
๐บ๐ธ
kosada.com
2026-04-25 16:29:06
(3 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
Anonymous
2026-04-22 09:31:43
(3 months ago)
FortiWeb WAF: 32 attacks detected. Threat Score: 6400. Types: Client Management(16), GEO IP(16). Ori ...
show more
FortiWeb WAF: 32 attacks detected. Threat Score: 6400. Types: Client Management(16), GEO IP(16). Origin: Singapore.
show less
Web App Attack
๐จ๐ญ
rt
2026-04-17 10:09:52
(3 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ท๐บ
Mga Admin
2026-03-26 08:57:12
(4 months ago)
45.78.207.165 - - [26/Mar/2026:15:57:11 +0700] "GET /risks.files/image002.gif HTTP/1.1" 404 196 "htt ...
show more
45.78.207.165 - - [26/Mar/2026:15:57:11 +0700] "GET /risks.files/image002.gif HTTP/1.1" 404 196 "https://mga.bionet.nsc.ru" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-03-26 05:17:02
(4 months ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
kosada.com
2026-03-23 09:12:33
(4 months ago)
Web bot: DDoS
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-12-04 18:47:46
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 13:47:27.381765 2025] [security2:error] [pid 24895:tid 24895] [client 45.78.207.165:59948] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||mathieu.bouville.name|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "mathieu.bouville.name"] [uri "/figures/Bouville-time-evolution.png"] [unique_id "aTHXP3LG8Wh9QNcIdKNiNgAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-04 15:45:22
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Dec 04 10:45:13.238071 2025] [security2:error] [pid 24894:tid 24894] [client 45.78.207.165:7237] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||lertap5.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "lertap5.com"] [uri "/normalcurvesnap3.png"] [unique_id "aTGsiSNuwu09VHhEQx2wFgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-03 22:11:44
(7 months ago)
Web app attack and vulnerability scan detected from IIS logs
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-02 21:13:58
(7 months ago)
Web app attack and vulnerability scan detected from IIS logs
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-02 20:46:25
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 45.78.207.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 15:46:16.327923 2025] [security2:error] [pid 9926:tid 9926] [client 45.78.207.165:3252] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rimworld.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rimworld.com"] [uri "/tripoligerlach/downloads/2011-01-02.pdf"] [unique_id "aS9QGFSJEBCTzPfzU3xNgwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
MAGIC
2025-12-02 04:04:14
(7 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot