πΊπΈ
TPI-Abuse
2026-10-01 05:25:32
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 01:25:27.873914 2026] [security2:error] [pid 16571:tid 16571] [client 162.158.154.155:11490] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.wendeenicole.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.wendeenicole.com"] [uri "/index.php.bak"] [unique_id "ar3uxzISfVYIixS9zhOmoQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 14:15:21
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 10:15:17.382195 2026] [security2:error] [pid 25836:tid 25849] [client 162.158.154.155:9373] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafmglobal.com"] [uri "/wp-config.php"] [unique_id "ar0ZdWWaSoqWJhCSQZzyxAAAAUs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 06:01:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 02:01:48.569529 2026] [security2:error] [pid 32409:tid 32409] [client 162.158.154.155:11642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sophcomp.com"] [uri "/.htaccess"] [unique_id "arylzD4CG-886vt4nlbwrQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 04:02:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:02:42.854036 2026] [security2:error] [pid 23820:tid 23820] [client 162.158.154.155:14001] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "croixlac.com"] [uri "/.htaccess"] [unique_id "aryJ4olh4vpW-Vx9G1QJWAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 03:19:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 23:19:44.093187 2026] [security2:error] [pid 8071:tid 8071] [client 162.158.154.155:12572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.partybussantafe.com"] [uri "/.htaccess"] [unique_id "arx_0GSwd6pLdwu2PqgKyAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 08:51:43
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 04:51:38.156005 2026] [security2:error] [pid 27820:tid 27820] [client 162.158.154.155:14142] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||millmade.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "millmade.com"] [uri "/index.php.bak"] [unique_id "art8Gn84nTZ_YrigFxTjTgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 03:26:24
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 23:26:17.603840 2026] [security2:error] [pid 13376:tid 13376] [client 162.158.154.155:13926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "berklie.com"] [uri "/wp-config.php.bak"] [unique_id "arsv2RMlwk8-mJyBz4V07gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π―π΅
S.O.B.A. Dev.
2026-08-26 09:33:49
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
πΊπΈ
TPI-Abuse
2026-08-24 15:27:35
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:27:29.882546 2026] [security2:error] [pid 26635:tid 26645] [client 162.158.154.155:11580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.accutar.com"] [uri "/.git/config"] [unique_id "aoxi4QVXn7ZOQj5QVRSYjAAAAYg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
oncord
2026-04-14 14:57:11
(5 months ago)
Form spam
Web Spam
πΊπΈ
octageeks.com
2026-04-10 04:09:07
(5 months ago)
Wordpress malicious attack:[octausername]
Web App Attack
πΊπΈ
octageeks.com
2026-03-21 04:09:31
(6 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 03:07:01
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 23:06:55.494364 2026] [security2:error] [pid 27388:tid 27388] [client 162.158.154.155:11650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bespoke-ss.com"] [uri "/.env1"] [unique_id "ab4LTxVc7BzHuLTlyRarKgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 05:09:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 01:09:24.495611 2026] [security2:error] [pid 20820:tid 20820] [client 162.158.154.155:10536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.daveewalker.bz"] [uri "/backend/.env"] [unique_id "abzWhLmT-BcMmbK3SeigSAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 03:33:33
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.155 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 23:33:28.471644 2026] [security2:error] [pid 32251:tid 32251] [client 162.158.154.155:13758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coiledtubingdrilling.com.antech.net"] [uri "/.envrc"] [unique_id "abzACON4UnSdgG-QyJGxXQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack