πΊπΈ
TPI-Abuse
2026-08-30 20:02:21
(14 hours ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 16:02:13.101746 2026] [security2:error] [pid 10621:tid 10621] [client 52.39.160.48:61305] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||auguststoten.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "auguststoten.com"] [uri "/"] [unique_id "apSMRX6DjkwnfznZgUjLRwAAABc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-30 19:45:40
(14 hours ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 15:45:32.979139 2026] [security2:error] [pid 16431:tid 16498] [client 52.39.160.48:53570] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||beckmon.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "beckmon.com"] [uri "/"] [unique_id "apSIXOg-Q-Zze805BzfNlgAAAQ4"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-20 21:30:08
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 17:29:58.971804 2026] [security2:error] [pid 17009:tid 17009] [client 52.39.160.48:7366] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||altruaglobalsolutions.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "altruaglobalsolutions.com"] [uri "/"] [unique_id "aodx1nX-k5Qszd6AWUxqagAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-09 12:15:38
(3 weeks ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 09 08:15:32.961950 2026] [security2:error] [pid 2516800:tid 2516805] [client 52.39.160.48:61130] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||illianapartyrentals.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "illianapartyrentals.com"] [uri "/"] [unique_id "anhvZONk9YU7JVGBvEgtmwAAAcI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-30 16:51:48
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 12:51:41.156254 2026] [security2:error] [pid 882646:tid 882646] [client 52.39.160.48:24513] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||keysenterprise.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "keysenterprise.com"] [uri "/"] [unique_id "amuBHSUzsClqg9P2XHX2OAAAAAE"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 19:45:54
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 15:45:47.283822 2026] [security2:error] [pid 209139:tid 209166] [client 52.39.160.48:10819] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||sasintegrated.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "sasintegrated.com"] [uri "/"] [unique_id "al_Maw03y-qVJ1ItE3uhzwAAABU"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 03:40:15
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 23:40:10.380445 2026] [security2:error] [pid 2182977:tid 2182977] [client 52.39.160.48:17814] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||med-engineering.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "med-engineering.com"] [uri "/"] [unique_id "alhSmj_VPiBCKtSAMK_2vAAAAAA"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 02:20:51
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 22:20:47.705355 2026] [security2:error] [pid 21794:tid 21794] [client 52.39.160.48:61567] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rblep.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rblep.com"] [uri "/"] [unique_id "alg__xu0yVj2tgtfGtgeEQAAAAg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-09 17:35:48
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 09 13:35:42.516770 2026] [security2:error] [pid 32042:tid 32042] [client 52.39.160.48:13464] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ellesorority.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ellesorority.com"] [uri "/"] [unique_id "ak_b7m7e8cTOzTGf5hxdUgAAAAI"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-03 18:41:41
(1 month ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 14:41:38.062613 2026] [security2:error] [pid 942:tid 952] [client 52.39.160.48:65039] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||sasintegrated.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "sasintegrated.com"] [uri "/"] [unique_id "akgCYpOkdmqMxazlIU1j8QAAAAc"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-12 21:28:30
(2 months ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 17:28:23.243585 2026] [security2:error] [pid 3885:tid 3966] [client 52.39.160.48:46508] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||sasintegrated.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "sasintegrated.com"] [uri "/"] [unique_id "aix5967lCEvphs41pKwb_gAAAIY"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
MAGIC
2026-05-28 02:17:15
(3 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-05-21 00:54:44
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 20:54:38.716526 2026] [security2:error] [pid 927:tid 927] [client 52.39.160.48:38683] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rblep.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rblep.com"] [uri "/.well-known/gpc.json"] [unique_id "ag5XziW5YTI15YxOKDYVHwAAADg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-11 01:31:49
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 21:31:43.642437 2026] [security2:error] [pid 31229:tid 31360] [client 52.39.160.48:38879] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||illianapartyrentals.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "illianapartyrentals.com"] [uri "/.well-known/gpc.json"] [unique_id "agExfzPv_DjkADXkFf6dWwAAApM"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-06 18:51:58
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.comput ...
show more
(mod_security) mod_security (id:210350) triggered by 52.39.160.48 (ec2-52-39-160-48.us-west-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 14:51:50.520916 2026] [security2:error] [pid 17786:tid 17786] [client 52.39.160.48:21797] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||personal-sportswear.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "personal-sportswear.com"] [uri "/"] [unique_id "afuNxl0JAnbQ7mWRKV8angAAACM"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack