🇺🇸
TPI-Abuse
2026-09-08 00:37:05
(23 hours ago)
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 20:36:59.048819 2026] [security2:error] [pid 2655156:tid 2655156] [client 82.38.180.122:58802] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.CompassionFatigue.org|F|4"] [data "keep-alive, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.compassionfatigue.org"] [uri "/uploads/1/3/7/9/137936581/workplaceviolencezerotolerance.docx"] [unique_id "ap9Yq2zHWbvvcpJksqS_qwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Yosi
2026-09-02 06:37:52
(6 days ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
🇺🇸
TPI-Abuse
2026-08-28 18:00:54
(1 week ago)
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 14:00:34.299851 2026] [security2:error] [pid 2302:tid 2302] [client 82.38.180.122:33554] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.northfortworthalliance.com|F|4"] [data "keep-alive, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.northfortworthalliance.com"] [uri "/nfwa min/ZIP Code Change.docx"] [unique_id "apHMwvsmSxI_YhXuHBOmIAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
SX Communications
2026-08-26 07:25:34
(1 week ago)
Blocked abusive HTTP application-layer DoS / botnet traffic from 82.38.180.122: traffic from this ad ...
show more
Blocked abusive HTTP application-layer DoS / botnet traffic from 82.38.180.122: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
DDoS Attack
Bad Web Bot
Exploited Host
🇺🇸
TPI-Abuse
2026-08-25 13:04:01
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:03:53.344319 2026] [security2:error] [pid 14892:tid 14892] [client 82.38.180.122:41878] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||AFJM.NET|F|4"] [data "keep-alive, keep-alive, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "afjm.net"] [uri "/Denial- hinders Development-w.doc"] [unique_id "ao2SuZGnyP0ZOl6Ts4nbfwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-25 04:35:31
(2 weeks ago)
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 82.38.180.122 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 00:35:24.767959 2026] [security2:error] [pid 20531:tid 20531] [client 82.38.180.122:37266] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.joshuashands.org|F|4"] [data "keep-alive, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.joshuashands.org"] [uri "/joshuashands.org/News/Entries/2014/6/16_Scholarships_Awarded_files/Civics Quiz Answers.doc"] [unique_id "ao0bjOBaME1ycxJyar1E1wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
FireGuard Server
2026-08-19 09:20:07
(2 weeks ago)
Blocked by os-abuseipdb; 4 hits, proto=tcp, ports=443
Port Scan
Hacking
Anonymous
2026-08-18 02:10:24
(3 weeks ago)
Scraper not respecting robots.txt or not identifying itself properly
...
Bad Web Bot
🇺🇸
kosada.com
2026-08-17 21:15:18
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇫🇷
Sklurk
2026-08-17 04:33:10
(3 weeks ago)
Web App Attack
Web App Attack
🇺🇸
kosada.com
2026-08-15 22:45:17
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
🇫🇷
Sklurk
2026-08-14 07:38:04
(3 weeks ago)
Web App Attack
Web App Attack
🇺🇸
kosada.com
2026-08-13 07:45:12
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
Anonymous
2026-08-12 04:08:56
(3 weeks ago)
Scraper not respecting robots.txt or not identifying itself properly
...
Bad Web Bot
🇺🇸
kosada.com
2026-08-11 19:30:04
(4 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot