Anonymous
2026-06-16 21:19:30
(2 days ago)
Honeypot hit: Unauthorized connection attempt detected on 23/TELNET
Reported by: https://github.com/ ...
show more
Honeypot hit: Unauthorized connection attempt detected on 23/TELNET
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Hacking
Port Scan
Anonymous
2026-06-16 20:45:44
(2 days ago)
Unauthorized connection attempt on Port 2323
Port Scan
Hacking
Exploited Host
πΊπΈ
RAP
2026-06-16 15:59:11
(2 days ago)
2026-06-16 15:59:11 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
πΊπΈ
TPI-Abuse
2026-03-14 18:59:42
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 14:59:33.913382 2026] [security2:error] [pid 21653:tid 21653] [client 80.71.150.193:32873] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pleasefixmycomputer.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pleasefixmycomputer.com"] [uri "/aboutus"] [unique_id "abWwFdXLBjOP0F2h7urlYQAAAAM"], referer: https://pleasefixmycomputer.com/aboutus
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-14 04:46:43
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 00:46:24.476917 2026] [security2:error] [pid 27957:tid 27957] [client 80.71.150.193:36811] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||denvercitymotorparts.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "denvercitymotorparts.com"] [uri "/profile"] [unique_id "abToILalrZJZHA-PD27g_AAAAAY"], referer: https://denvercitymotorparts.com/profile
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-27 03:18:56
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 26 22:18:11.896133 2026] [security2:error] [pid 25273:tid 25273] [client 80.71.150.193:33713] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||serranoscoffee.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "serranoscoffee.com"] [uri "/"] [unique_id "aaEM89fxw2B6i4FfkpALwgAAAAo"], referer: https://serranoscoffee.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-02-20 08:04:40
(3 months ago)
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 80.71.150.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 20 03:04:34.327824 2026] [security2:error] [pid 31723:tid 31789] [client 80.71.150.193:54857] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.heworeblack.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.heworeblack.com"] [uri "/reflection/before-the-man-in-black-he-was-the-man-in-blue/"] [unique_id "aZgVkpkUWj5BXKZGqBDdrwAAAFM"], referer: https://www.heworeblack.com/reflection/before-the-man-in-black-he-was-the-man-in-blue/
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Mangelot Hosting
2026-01-10 05:56:56
(5 months ago)
(db_admin_scan) srv101 DB admin scan 80.71.150.193 (US/United States/-): 1 in the last 3600 secs; Po ...
show more
(db_admin_scan) srv101 DB admin scan 80.71.150.193 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack