๐บ๐ธ
TPI-Abuse
2026-06-17 03:57:28
(3 days ago)
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 23:57:20.701651 2026] [security2:error] [pid 18038:tid 18038] [client 88.218.72.221:53637] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||gabver.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "gabver.com"] [uri "/"] [unique_id "ajIbIBRbeK99QgCXSqXxcAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 02:17:38
(3 days ago)
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 22:17:35.343503 2026] [security2:error] [pid 1483:tid 1483] [client 88.218.72.221:57693] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||gabbyspetnanny.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "gabbyspetnanny.com"] [uri "/"] [unique_id "ajIDv6W2Cy3vm3S_q6Jf0gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 18:29:51
(3 days ago)
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 14:29:46.242011 2026] [security2:error] [pid 32704:tid 32704] [client 88.218.72.221:34805] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||futuresgrowhere.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "futuresgrowhere.com"] [uri "/"] [unique_id "ajGWGo1alqF5rIseC9B0igAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 05:13:57
(1 week ago)
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 11 01:13:51.988397 2026] [security2:error] [pid 31427:tid 31447] [client 88.218.72.221:59611] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||foresthillseast.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "foresthillseast.com"] [uri "/"] [unique_id "aipEDx142yn5bE2QvJVCggAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
conseilgouz
2026-06-10 06:59:34
(1 week ago)
fmw-Joomla User : try to access forms...
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 07:06:25
(1 week ago)
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 03:06:21.577117 2026] [security2:error] [pid 5918:tid 5918] [client 88.218.72.221:43679] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||flemingtonmartins.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "flemingtonmartins.com"] [uri "/"] [unique_id "aiZp7feBhqCNwLTE18WlJQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 21:38:11
(1 week ago)
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210740) triggered by 88.218.72.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 17:38:04.897349 2026] [security2:error] [pid 17106:tid 17106] [client 88.218.72.221:44785] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||fisseq.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "fisseq.com"] [uri "/"] [unique_id "aiSTPGj8ykXWBMPR-NUZqgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-06-03 06:13:23
(2 weeks ago)
[WedJun0308:13:18.1930572026][security2:error][pid1288827:tid1288868][client88.218.72.221:0]ModSecur ...
show more
[WedJun0308:13:18.1930572026][security2:error][pid1288827:tid1288868][client88.218.72.221:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"www.royalhosting.ch\"][uri\"/robots.txt\"][unique_id\"ah_F_p6VOz1VtaOqlss2nQAAABg\"]
show less
Port Scan
Brute-Force
Web App Attack