๐บ๐ธ
TPI-Abuse
2026-09-29 21:44:33
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 17:44:25.684612 2026] [security2:error] [pid 32476:tid 32476] [client 162.158.154.148:12779] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "horseillustration.com"] [uri "/.git/config"] [unique_id "arwxOTGll_W_Zo3SzPONDQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 19:58:46
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:58:38.687101 2026] [security2:error] [pid 20710:tid 20710] [client 162.158.154.148:12639] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.turtletaekwondo.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.turtletaekwondo.com"] [uri "/index.php.bak"] [unique_id "arwYbj6yIRmMlP4h7bkuagAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-26 12:22:28
(3 days ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:55:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:55:29.319185 2026] [security2:error] [pid 6691:tid 6691] [client 162.158.154.148:12930] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.diceknobs.com"] [uri "/.git/HEAD"] [unique_id "ao6qAQB8oTbbg7jRsBfLPgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-08-21 20:34:10
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ง๐ช
madeit
2026-08-07 05:53:56
(1 month ago)
Web App Attack
๐บ๐ธ
octageeks.com
2026-05-29 04:06:46
(4 months ago)
Wordpress malicious attack:[octascan]
Web App Attack
๐ฉ๐ช
abdubhai
2026-04-24 03:32:53
(5 months ago)
162.158.154.148 - - [24/Apr/2026
...
Brute-Force
๐บ๐ธ
octageeks.com
2026-04-10 04:09:17
(5 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฉ๐ช
abdubhai
2026-04-09 21:10:30
(5 months ago)
162.158.154.148 - - [10/Apr/2026
...
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-03-20 08:44:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:44:27.290214 2026] [security2:error] [pid 26126:tid 26126] [client 162.158.154.148:11893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mysticalparadise.com"] [uri "/.env_secret"] [unique_id "ab0I60gGGQ1woAB6F3JFDgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 06:05:28
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 02:05:20.808508 2026] [security2:error] [pid 3376:tid 3376] [client 162.158.154.148:11125] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.kingmansvc.com"] [uri "/private/.env"] [unique_id "abzjoO2OaM_iFriCQ4_2WwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 03:13:58
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 23:13:52.074792 2026] [security2:error] [pid 20402:tid 20402] [client 162.158.154.148:12868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.rhkglobal.com"] [uri "/.env.dev"] [unique_id "aby7cOsc7DU-f4ePwpeL4gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 02:22:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 22:22:25.703795 2026] [security2:error] [pid 1350:tid 1380] [client 162.158.154.148:13305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.pattinauction.com"] [uri "/.env.development.local"] [unique_id "abyvYQUV_ySGB_6v3buOnQAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 11:32:20
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:32:16.028551 2026] [security2:error] [pid 21794:tid 21794] [client 162.158.154.148:11250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lilpiggiescardgame.com"] [uri "/.env.local"] [unique_id "abvewAiIWVIceDPqTFay0wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack