|
๐ป๐ช
181.191.225.221
|
|
(mod_security) mod_security (id:210350) triggered by 181.191.225.221 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 181.191.225.221 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:38.965052 2026] [security2:error] [pid 22981:tid 22981] [client 181.191.225.221:18949] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||vexxarr.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "vexxarr.com"] [uri "/"] [unique_id "arLD6kyg3EDcWc-UNDioSgAAAAk"], referer: https://caddocourt.com/traveller
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
168.197.107.123
|
|
(mod_security) mod_security (id:210350) triggered by 168.197.107.123 (168-197-107-123.gtbatelecom.co ...
show more
(mod_security) mod_security (id:210350) triggered by 168.197.107.123 (168-197-107-123.gtbatelecom.com.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:35.535962 2026] [security2:error] [pid 25879:tid 25879] [client 168.197.107.123:48227] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||naturalhomebuilders.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "naturalhomebuilders.com"] [uri "/built-in-furniture"] [unique_id "arLD52d2puwOLxu8lF2YoAAAABA"], referer: https://naturalhomebuilders.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฒ๐น
92.251.73.8
|
|
(mod_security) mod_security (id:210350) triggered by 92.251.73.8 (c73-8.i07-19.onvol.net): 1 in the ...
show more
(mod_security) mod_security (id:210350) triggered by 92.251.73.8 (c73-8.i07-19.onvol.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:32.243590 2026] [security2:error] [pid 19976:tid 19976] [client 92.251.73.8:47482] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||icaruscreativearts.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "icaruscreativearts.com"] [uri "/"] [unique_id "arLD5D81VAxNNgJADRZ9SgAAABg"], referer: https://tanglesbythesea.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฆ๐ท
179.0.225.158
|
|
(mod_security) mod_security (id:210350) triggered by 179.0.225.158 (host-158.225.0.179.clientes.cala ...
show more
(mod_security) mod_security (id:210350) triggered by 179.0.225.158 (host-158.225.0.179.clientes.calacoop.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:26.611353 2026] [security2:error] [pid 29303:tid 29303] [client 179.0.225.158:50952] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||recetabook.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "recetabook.com"] [uri "/"] [unique_id "arLD3kNKu2WGDNhbFVmm3wAAAAE"], referer: https://antojoentucocina.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ณ๐ฑ
34.187.45.70
|
|
(mod_security) mod_security (id:210492) triggered by 34.187.45.70 (70.45.187.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.187.45.70 (70.45.187.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:31.302413 2026] [security2:error] [pid 30705:tid 30705] [client 34.187.45.70:52416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ticmatopografiaeingenieria.com.spyasociados.com"] [uri "/.git/config"] [unique_id "arLD41OXxqK0VJkdx0QfkgAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐น
89.46.109.232
|
|
(mod_security) mod_security (id:210492) triggered by 89.46.109.232 (host232-109-46-89.serverdedicati ...
show more
(mod_security) mod_security (id:210492) triggered by 89.46.109.232 (host232-109-46-89.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:27.368823 2026] [security2:error] [pid 16965:tid 16965] [client 89.46.109.232:24068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "333w88.com"] [uri "/wp-config.php.bak"] [unique_id "arLD3-SJTx_mbUcmmi72NQAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
186.194.144.164
|
|
(mod_security) mod_security (id:210350) triggered by 186.194.144.164 (164.144.194.186.dynamic.opcaot ...
show more
(mod_security) mod_security (id:210350) triggered by 186.194.144.164 (164.144.194.186.dynamic.opcaotelecom.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:25.899929 2026] [security2:error] [pid 29064:tid 29064] [client 186.194.144.164:52925] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||certifiedfarmersmarkets.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "certifiedfarmersmarkets.org"] [uri "/"] [unique_id "arLD3TWyBlpQGOYaW7udTAAAABI"], referer: https://psculturalcenter.org/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
186.219.149.168
|
|
(mod_security) mod_security (id:210350) triggered by 186.219.149.168 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210350) triggered by 186.219.149.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:25.733443 2026] [security2:error] [pid 13621:tid 13621] [client 186.219.149.168:7509] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||vexxarr.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "vexxarr.com"] [uri "/"] [unique_id "arLD3XOjCRBifcgp7OtlhgAAAA4"], referer: https://caddocourt.com/traveller
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฉ๐ช
2001:8d8:5ff:5f:82:165:84:16
|
|
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:84:16 (infongp-de8.clien ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:84:16 (infongp-de8.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:19.791723 2026] [security2:error] [pid 32506:tid 32506] [client 2001:8d8:5ff:5f:82:165:84:16:46454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goodpage.com"] [uri "/wp-config.php.bak"] [unique_id "arLD18WvfqlRpLLHuvc4vwAAAA4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฉ๐ช
2001:8d8:5ff:5f:82:165:87:227
|
|
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:87:227 (infong-eu230.cli ...
show more
(mod_security) mod_security (id:210492) triggered by 2001:8d8:5ff:5f:82:165:87:227 (infong-eu230.clienthosting.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:14.656111 2026] [security2:error] [pid 13764:tid 13764] [client 2001:8d8:5ff:5f:82:165:87:227:41656] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ohwaitiforgot.com"] [uri "/wp-config.php.bak"] [unique_id "arLD0k1J2zHk_b7HuIZZuwAAAAw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ช
34.79.216.182
|
|
(mod_security) mod_security (id:210730) triggered by 34.79.216.182 (182.216.79.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.79.216.182 (182.216.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:13.086426 2026] [security2:error] [pid 7219:tid 7219] [client 34.79.216.182:37480] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||development-dynamics.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "development-dynamics.com"] [uri "/z9x8c7v6b5-debug-trigger-development-dynamics.com"] [unique_id "arLD0SN3HjFJ2SrHLybdrwAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
177.38.193.13
|
|
(mod_security) mod_security (id:210350) triggered by 177.38.193.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 177.38.193.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:15.153419 2026] [security2:error] [pid 5240:tid 5240] [client 177.38.193.13:5291] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||arroceraomoa.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "arroceraomoa.com"] [uri "/"] [unique_id "arLD0-sJjqwIXZkkxbWIzwAAAAw"], referer: https://sacoselsalvador.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐น๐ณ
197.15.163.69
|
|
(mod_security) mod_security (id:210730) triggered by 197.15.163.69 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 197.15.163.69 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:13.786172 2026] [security2:error] [pid 5452:tid 5452] [client 197.15.163.69:45156] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gamepart.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gamepart.com"] [uri "/home/tancedi1/gamepart.com"] [unique_id "arLD0f-4xQpZBuRKB7ZOsAAAABA"], referer: https://mail.freerepublic.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ฐ
103.157.200.78
|
|
(mod_security) mod_security (id:210350) triggered by 103.157.200.78 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 103.157.200.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:09.521424 2026] [security2:error] [pid 9118:tid 9118] [client 103.157.200.78:59560] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||noisepie.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "noisepie.com"] [uri "/"] [unique_id "arLDzTAbbTswrkzlaWGhuAAAAB0"], referer: https://newcoolthang.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฆ๐ท
186.39.85.198
|
|
(mod_security) mod_security (id:210730) triggered by 186.39.85.198 (186-39-85-198.mrse.com.ar): 1 in ...
show more
(mod_security) mod_security (id:210730) triggered by 186.39.85.198 (186-39-85-198.mrse.com.ar): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:08.979268 2026] [security2:error] [pid 8122:tid 8122] [client 186.39.85.198:41652] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gamepart.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gamepart.com"] [uri "/home/tancedi1/gamepart.com"] [unique_id "arLDzL0z1B2avFRIr9C_sAAAAAs"], referer: https://mail.freerepublic.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐น
89.46.108.103
|
|
(mod_security) mod_security (id:210492) triggered by 89.46.108.103 (host103-108-46-89.serverdedicati ...
show more
(mod_security) mod_security (id:210492) triggered by 89.46.108.103 (host103-108-46-89.serverdedicati.aruba.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:12.066953 2026] [security2:error] [pid 21031:tid 21031] [client 89.46.108.103:23424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mp3tracks.com"] [uri "/wp-config.php.bak"] [unique_id "arLD0FLC3ndQlKsX8Rww4wAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
34.57.149.113
|
|
(mod_security) mod_security (id:210492) triggered by 34.57.149.113 (113.149.57.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.57.149.113 (113.149.57.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:11.082800 2026] [security2:error] [pid 8950:tid 8950] [client 34.57.149.113:48122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "varnadorefamily.com"] [uri "/.git/config"] [unique_id "arLDz4UYvUxyXRc-ArYSIAAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ฉ
34.101.242.182
|
|
(mod_security) mod_security (id:210492) triggered by 34.101.242.182 (182.242.101.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.242.182 (182.242.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:08.341069 2026] [security2:error] [pid 31867:tid 31867] [client 34.101.242.182:50200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abneyfoundation.org"] [uri "/var/www/.git/config"] [unique_id "arLDzM1nKpk2uiZexKEDAAAAAA4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
177.131.189.57
|
|
(mod_security) mod_security (id:210350) triggered by 177.131.189.57 (177-131-189-57.static.sumicity. ...
show more
(mod_security) mod_security (id:210350) triggered by 177.131.189.57 (177-131-189-57.static.sumicity.net.br): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:07:03.169649 2026] [security2:error] [pid 29064:tid 29064] [client 177.131.189.57:28334] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||certifiedfarmersmarkets.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "certifiedfarmersmarkets.org"] [uri "/"] [unique_id "arLDxzWyBlpQGOYaW7udSwAAABI"], referer: https://psculturalcenter.org/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
177.73.206.127
|
|
(mod_security) mod_security (id:210350) triggered by 177.73.206.127 (177-73-206-127.PROXXIMA.NET): 1 ...
show more
(mod_security) mod_security (id:210350) triggered by 177.73.206.127 (177-73-206-127.PROXXIMA.NET): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:06:59.116020 2026] [security2:error] [pid 3056:tid 3056] [client 177.73.206.127:32588] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||beautyradio.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "beautyradio.com"] [uri "/"] [unique_id "arLDw2A1U1COKrpjvAt58wAAABw"], referer: https://beautyradio.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ช๐จ
200.50.234.167
|
|
(mod_security) mod_security (id:210350) triggered by 200.50.234.167 (host-200-50-234-167.fibramax.ec ...
show more
(mod_security) mod_security (id:210350) triggered by 200.50.234.167 (host-200-50-234-167.fibramax.ec): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:06:59.782942 2026] [security2:error] [pid 5366:tid 5366] [client 200.50.234.167:42094] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||jrbentley.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "jrbentley.com"] [uri "/"] [unique_id "arLDw5pm9H371r-w1pCHSQAAAAI"], referer: https://cartertools.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
162.243.165.224
|
|
(mod_security) mod_security (id:210730) triggered by 162.243.165.224 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.243.165.224 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:06:55.607291 2026] [security2:error] [pid 8137:tid 8137] [client 162.243.165.224:64386] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gamepart.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gamepart.com"] [uri "/home/tancedi1/gamepart.com"] [unique_id "arLDv6ExuqxDfMxB-CZjywAAABE"], referer: https://mail.freerepublic.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ฆ
134.249.8.214
|
|
(mod_security) mod_security (id:210350) triggered by 134.249.8.214 (134-249-8-214.broadband.kyivstar ...
show more
(mod_security) mod_security (id:210350) triggered by 134.249.8.214 (134-249-8-214.broadband.kyivstar.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:06:48.550166 2026] [security2:error] [pid 6953:tid 6953] [client 134.249.8.214:32747] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||vexxarr.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "vexxarr.com"] [uri "/"] [unique_id "arLDuCTNHFMKXJG-UiH48QAAAAE"], referer: https://caddocourt.com/traveller
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฆ๐ฑ
188.164.217.8
|
|
(mod_security) mod_security (id:210350) triggered by 188.164.217.8 (ptr.abcom.al): 1 in the last 300 ...
show more
(mod_security) mod_security (id:210350) triggered by 188.164.217.8 (ptr.abcom.al): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:06:46.470855 2026] [security2:error] [pid 6758:tid 6758] [client 188.164.217.8:58374] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||lighthousegive.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "lighthousegive.com"] [uri "/"] [unique_id "arLDtrfqpEmknr9yxC_rpAAAAAw"], referer: https://apostleinc.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฉ๐ด
38.224.239.240
|
|
(mod_security) mod_security (id:210350) triggered by 38.224.239.240 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 38.224.239.240 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 14:06:47.422213 2026] [security2:error] [pid 15810:tid 15911] [client 38.224.239.240:50162] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||windstream-sales.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "windstream-sales.com"] [uri "/"] [unique_id "arLDt6pUkXecfSOgmguXRgAAAdU"], referer: https://your-connected.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|