๐บ๐ธ
TPI-Abuse
2026-08-27 11:47:16
(1 hour ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:47:12.994920 2026] [security2:error] [pid 9519:tid 9519] [client 42.201.192.92:15086] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||clossglobal.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "clossglobal.com"] [uri "/"] [unique_id "apAjwLiIohSN9855tliwOwAAAAk"], referer: https://betwinnermirror.com/all/652/14.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 23:47:47
(13 hours ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 19:47:40.326403 2026] [security2:error] [pid 7014:tid 7014] [client 42.201.192.92:17137] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||andiamocomputers.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "andiamocomputers.com"] [uri "/"] [unique_id "ao97HNDABSE_hwaNfYTVbwAAAAI"], referer: https://wecelebrities.com/all/240/33.html
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 17:09:07
(20 hours ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:09:00.809921 2026] [security2:error] [pid 549529:tid 549543] [client 42.201.192.92:52166] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||charbelaj.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "charbelaj.com"] [uri "/locate.php"] [unique_id "ao8drKKHc8vyIo5hQ60DEAAAAAo"], referer: https://charbelaj.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 05:20:16
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 01:20:05.914684 2026] [security2:error] [pid 31012:tid 31012] [client 42.201.192.92:59244] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||furfriend-z.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "furfriend-z.com"] [uri "/information.htm"] [unique_id "ao53hdustTpFk3_9U6u9XAAAAAo"], referer: https://furfriend-z.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 19:29:27
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 15:29:21.563326 2026] [security2:error] [pid 29533:tid 29533] [client 42.201.192.92:32039] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||schwanpaint.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "schwanpaint.com"] [uri "/"] [unique_id "ao3tEft1b5vJsl3DEPGb6wAAAAk"], referer: https://schwanpaint.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:20:48
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:20:42.932834 2026] [security2:error] [pid 16073:tid 16073] [client 42.201.192.92:35633] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||esysapps.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "esysapps.com"] [uri "/"] [unique_id "ao3O6is3UzEqzVMp9qvUogAAAAo"], referer: https://esysapps.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
sssrit
2026-08-23 18:54:23
(3 days ago)
42.201.192.92 - - [23/Aug/2026:20:54:22 +0200] "GET /wp-content/uploads/sites/2/2018/12/modello_dele ...
show more
42.201.192.92 - - [23/Aug/2026:20:54:22 +0200] "GET /wp-content/uploads/sites/2/2018/12/modello_delega_cassetto_fiscale_agenzia_delle_entrate.pdf HTTP/2.0" 404 131 "http://onida.sssr.it/" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/121.0.0.0 Safari/537.36 Edg/121.0.0.0"
...
show less
Web App Attack
Anonymous
2026-08-23 18:04:22
(3 days ago)
Unauthorized access (443/tcp/https)
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 15:43:26
(3 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 11:43:18.865481 2026] [security2:error] [pid 23424:tid 23424] [client 42.201.192.92:25500] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.ramseycountycorruption.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.ramseycountycorruption.com"] [uri "/"] [unique_id "aosVFlpqfF0Hh-NpcuxP6AAAAAc"], referer: https://ramseycountycorruption.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 08:38:51
(5 days ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 04:38:43.055275 2026] [security2:error] [pid 21464:tid 21535] [client 42.201.192.92:10217] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||managementconsultant.us|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "managementconsultant.us"] [uri "/"] [unique_id "aolgE3iOQyS5w3Zr7VR0uwAAAgE"], referer: https://managementconsultant.us/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 04:39:02
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 00:38:56.919702 2026] [security2:error] [pid 26777:tid 26777] [client 42.201.192.92:52530] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||budgetbyron.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "budgetbyron.com"] [uri "/"] [unique_id "aoaE4P-EVHrH_GDqJfhXbAAAAAE"], referer: https://budgetbyron.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 23:25:19
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 19:25:13.787133 2026] [security2:error] [pid 32105:tid 32105] [client 42.201.192.92:28991] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||listerman.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "listerman.org"] [uri "/"] [unique_id "aoY7WbrIz3xRb50vnYKFhwAAABA"], referer: https://listerman.org/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 14:49:38
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 10:49:32.904057 2026] [security2:error] [pid 13338:tid 13338] [client 42.201.192.92:33915] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||pleaseaddbacon.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "pleaseaddbacon.com"] [uri "/about"] [unique_id "aoXCfKYS16M-P-SpkrB9OQAAAB0"], referer: https://pleaseaddbacon.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-08-18 21:36:34
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 16:15:32
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 12:15:29.061607 2026] [security2:error] [pid 31346:tid 31346] [client 42.201.192.92:37343] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||indoorsfinishing.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "indoorsfinishing.com"] [uri "/"] [unique_id "aoSFIX-_Kn_RXXV0wDPoSQAAABY"], referer: https://indoorsfinishing.com/
show less
Brute-Force
Bad Web Bot
Web App Attack