๐บ๐ธ
TPI-Abuse
2026-09-14 06:03:05
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 02:03:01.416557 2026] [security2:error] [pid 24483:tid 24483] [client 42.201.192.11:28915] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.crearetest.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.crearetest.com"] [uri "/403.shtml"] [unique_id "aqeOFYNfypRPYdWWDgAfRQAAAAI"], referer: https://crearetest.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 02:43:19
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 22:43:12.473455 2026] [security2:error] [pid 4078632:tid 4078648] [client 42.201.192.11:57381] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||dasperformance.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "dasperformance.com"] [uri "/harley-davidson/turbo/269320_611427812218192_1622721858_n"] [unique_id "aqdfQHDUL3zvi9F4j17ZWgAAAA4"], referer: https://dasperformance.com/harley-davidson/turbo
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 01:18:55
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 21:18:51.319183 2026] [security2:error] [pid 16423:tid 16423] [client 42.201.192.11:10263] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.tenmenband.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.tenmenband.com"] [uri "/"] [unique_id "aqdLe6MA1WtX-qoi4Z3_iAAAAAE"], referer: https://five.co.in/redirect.php?ref_host=stack.my
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-13 20:49:40
(2 days ago)
nginx-444 from fail2ban
...
Web App Attack
๐ฆ๐บ
FireGuard Server
2026-09-13 12:10:09
(2 days ago)
Blocked by os-abuseipdb; 5 hits, proto=tcp, ports=443
Port Scan
Hacking
๐ฉ๐ช
LRob
2026-09-13 06:32:39
(3 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /en-savoir-plus-sur-la-specialisation-des-cellules | 2026-09-13 06:32 UTC
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-13 00:32:54
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 20:32:50.537116 2026] [security2:error] [pid 16251:tid 16251] [client 42.201.192.11:45829] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||forwardti.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "forwardti.com"] [uri "/"] [unique_id "aqXvMqch-u1sWji18loI0wAAACQ"], referer: https://five.co.in/redirect.php?ref_host=thebjorklundaesthetic.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 23:38:31
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 19:38:26.019209 2026] [security2:error] [pid 10471:tid 10471] [client 42.201.192.11:38596] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||asiancommoditiescorporation.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "asiancommoditiescorporation.com"] [uri "/"] [unique_id "aqXiclPRL5a9JexS8GTlcQAAAAU"], referer: https://five.co.in/redirect.php?ref_host=oertli-naturschutz.ch
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 21:33:05
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 17:33:01.424768 2026] [security2:error] [pid 15805:tid 15805] [client 42.201.192.11:48934] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||rodeeinsurance.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "rodeeinsurance.com"] [uri "/"] [unique_id "aqXFDWCC58KNtHXCKkossQAAAAQ"], referer: https://addurl.in/redirect.php?ref_host=can-olgabahon.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 06:50:05
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 02:49:49.880051 2026] [security2:error] [pid 21514:tid 21537] [client 42.201.192.11:25576] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||vancekelly.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "vancekelly.com"] [uri "/"] [unique_id "aqT2DbpdevH9oPrlqTFU0gAAAAI"], referer: https://nathanramirez.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-11 21:20:43
(4 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: / | 2026-09-11 21:20 UTC
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-11 18:36:03
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 14:35:58.815927 2026] [security2:error] [pid 7926:tid 8006] [client 42.201.192.11:21863] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||cibernetic.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "cibernetic.com"] [uri "/yolandapantin"] [unique_id "aqRKDpxz_5FPKJvvNXfLqwAAAcg"], referer: https://sol-negro.blogspot.com/2022/10
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-11 12:27:52
(4 days ago)
Asking over plain http and never following the redirect served โ a crawler that reads nothing it ask ...
show more
Asking over plain http and never following the redirect served โ a crawler that reads nothing it asks for | method: GET | path: /leau-dans-ma-commune/le-cycle-de-leau | 2026-09-11 12:27 UTC
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-04 20:03:02
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:02:54.930241 2026] [security2:error] [pid 22874:tid 22874] [client 42.201.192.11:28918] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||lambert-heating-and-air.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "lambert-heating-and-air.com"] [uri "/"] [unique_id "apsj7qNCZL_sgXwTD-F56AAAAAM"], referer: https://lambert-heating-and-air.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 17:42:26
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.11 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 13:42:20.526308 2026] [security2:error] [pid 5863:tid 5863] [client 42.201.192.11:32107] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||directoryofcats.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "directoryofcats.com"] [uri "/domestic_breed_cats.htm"] [unique_id "apW8_Hm2UFJNt6-vn_pEpQAAAAk"], referer: https://directoryofcats.com/
show less
Brute-Force
Bad Web Bot
Web App Attack