๐ต๐ฑ
Jurigag
2026-09-21 14:40:53
(1 week ago)
Repeated failed authentication attempts against internal API endpoint on payments-service with inval ...
show more
Repeated failed authentication attempts against internal API endpoint on payments-service with invalid/empty Bearer token (automated scanning behavior, not normal client traffic).
show less
Brute-Force
Web App Attack
๐ฆ๐บ
MAGIC
2026-04-13 02:01:12
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-08 19:49:16
(5 months ago)
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 15:49:07.723172 2026] [security2:error] [pid 2598464:tid 2598464] [client 72.56.178.55:48767] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||coloradohifi.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "coloradohifi.com"] [uri "/about"] [unique_id "adaxM3O9I3UinG1bewTqZwAAAA4"], referer: https://coloradohifi.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
HandyTreff.de
2026-04-01 14:59:04
(5 months ago)
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -78.263 (Bad < -10 / Very Bad < -20 ...
show more
Bot/Spam/Scrapper attack detected on www.handytreff.de - Score: -78.263 (Bad < -10 / Very Bad < -20 / Extreme < -35) | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.7316.48 Safari/5
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-17 18:23:02
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 17 14:22:58.274767 2026] [security2:error] [pid 17982:tid 17982] [client 72.56.178.55:57567] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||customhumanrobots.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "customhumanrobots.com"] [uri "/about"] [unique_id "abmcAuqmUpHpxUm66JRDiwAAABg"], referer: https://customhumanrobots.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 18:52:07
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 14:52:00.250918 2026] [security2:error] [pid 24886:tid 24886] [client 72.56.178.55:57193] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||persnicketyinc.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "persnicketyinc.com"] [uri "/about"] [unique_id "abWuUFMWIlvZAd5aBR_62wAAAAo"], referer: https://persnicketyinc.com/about
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 13:41:27
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 09:41:21.535029 2026] [security2:error] [pid 13480:tid 13502] [client 72.56.178.55:59867] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||teritemme.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "teritemme.com"] [uri "/about-us"] [unique_id "abVlge-Apwo6aNNgV7_zXQAAAJQ"], referer: https://teritemme.com/about-us
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-10 07:01:13
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 10 03:00:20.941876 2026] [security2:error] [pid 23833:tid 23833] [client 72.56.178.55:29707] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||swhowell.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "swhowell.com"] [uri "/contact-us"] [unique_id "aa_BhEKuSv-3MiuOr0pb1gAAAAY"], referer: https://swhowell.com/contact-us
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-02 11:29:36
(6 months ago)
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 02 06:29:24.976431 2026] [security2:error] [pid 19677:tid 19677] [client 72.56.178.55:63517] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||ultratecnologia.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "ultratecnologia.com"] [uri "/about-us"] [unique_id "aaV0lIl9F7m9zy8zu4ELEgAAAAc"], referer: https://ultratecnologia.com/about-us
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-20 15:56:21
(7 months ago)
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 72.56.178.55 (undefined.hostname.localhost): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 20 10:56:14.420343 2026] [security2:error] [pid 21432:tid 21969] [client 72.56.178.55:53411] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||switchbl8.nl|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "switchbl8.nl"] [uri "/"] [unique_id "aZiEHt9h-jn2g1LANJD16gAAApE"], referer: https://switchbl8.nl
show less
Brute-Force
Bad Web Bot
Web App Attack