๐บ๐ธ
TPI-Abuse
2026-10-02 16:26:49
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 58.97.225.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 58.97.225.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 12:26:33.407588 2026] [security2:error] [pid 21810:tid 21810] [client 58.97.225.131:58408] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||thefrontporchoffering.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "thefrontporchoffering.com"] [uri "/"] [unique_id "ar_bOT-W70ZfWXZiOXUFgQAAAAE"], referer: https://onlinebacklinkbuilder.store/dir/natural-seo-backlinks-209034
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 14:08:34
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 58.97.225.131 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 58.97.225.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 10:08:20.859930 2026] [security2:error] [pid 4771:tid 4771] [client 58.97.225.131:42750] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||collectorcarconsultants.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "collectorcarconsultants.com"] [uri "/"] [unique_id "ar0X1LFqILeUDlLIcMPpxQAAABg"], referer: https://highqualitylink.website/dir/relevant-seo-backlinks-43035
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
securejdprop
2026-09-25 13:57:35
(1 week ago)
This IP was detected by CrowdSec triggering custom/vpatch-xmlrpc-abuse.
Hacking
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-15 18:38:23
(2 weeks ago)
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0. ...
show more
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36
show less
Bad Web Bot
Anonymous
2026-08-17 00:43:04
(1 month ago)
Distributed scraper residential proxy pool โ www.laxwineandspirits.com /store/filtered/ (WineCommerc ...
show more
Distributed scraper residential proxy pool โ www.laxwineandspirits.com /store/filtered/ (WineCommerce WAF)
show less
DDoS Attack
Bad Web Bot
Exploited Host
๐บ๐ธ
kosada.com
2026-07-27 23:04:00
(2 months ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐จ๐ฆ
polycoda
2026-05-23 04:17:22
(4 months ago)
AutoBlock: ๐ก Port Scan (Non Decay-Based)
Port Scan
๐ฎ๐ฉ
hermawan
2026-05-08 06:25:47
(4 months ago)
[Fri May 08 13:05:30.877480 2026] [security2:error] [pid 123992:tid 140125816202944] [client 58.97.2 ...
show more
[Fri May 08 13:05:30.877480 2026] [security2:error] [pid 123992:tid 140125816202944] [client 58.97.225.131:44550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "www.bmkg.go.id" at REQUEST_HEADERS:Referer. [file "/etc/modsecurity/coreruleset-4.25.0/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "623"] [id "440068"] [msg "BAD Referer"] [data "Matched Data: www.bmkg.go.id found within REQUEST_HEADERS:Referer: https://www.bmkg.go.id/ request_line = GET /index.php/analisis-iklim/analisis-musim/perbandingan-musim-kemarau/perbandingan-awal-musim-kemarau-dengan-normalnya HTTP/1.1"] [severity "NOTICE"] [hostname "staklim-jatim.bmkg.go.id"] [uri "/index.php/analisis-iklim/analisis-musim/perbandingan-musim-kemarau/perbandingan-awal-musim-kemarau-dengan-normalnya"] [unique_id "af19KsiCH4JYAFOOcoVlnwAAARM"], referer https://www.bmkg.go.id/ [staklim-jatim.bmkg.go.id] [staklim-jatim.bmkg.go.id] top=[124038] [WHcgL8j/uPw] [af19KsiCH4JYAFOOcoVlnwAAARM] keep_alive=[0] [2026-05-
...
show less
Email Spam
Hacking
Anonymous
2025-12-01 02:50:51
(10 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
Anonymous
2025-09-21 22:55:48
(1 year ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-09-08 07:06:19
(1 year ago)
Port probe to tcp/445 (smb)
[srv128]
Port Scan
Hacking
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-09-08 01:24:21
(1 year ago)
Port probe to tcp/445 (smb)
[srv128]
Port Scan
Hacking
Anonymous
2025-08-03 05:10:06
(1 year ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
Anonymous
2025-02-28 12:45:50
(1 year ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host
๐ต๐น
rnl
2024-10-31 09:03:08
(1 year ago)
postfix (unknown user, SPF fail or relay access denied)
Brute-Force