πΊπΈ
TPI-Abuse
2026-09-30 12:37:42
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 08:37:36.250091 2026] [security2:error] [pid 25758:tid 25758] [client 162.158.154.173:11975] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.stinsonbeachsurfandkayak.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.stinsonbeachsurfandkayak.com"] [uri "/index.php.bak"] [unique_id "ar0CkOqJcyR2hMUBPQjHZQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 08:23:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:23:06.161197 2026] [security2:error] [pid 29291:tid 29291] [client 162.158.154.173:9865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mirai-labo.com"] [uri "/wp-config.php"] [unique_id "arzG6jPgj22dP9DN0jJFsgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 10:13:55
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 06:13:50.603007 2026] [security2:error] [pid 26701:tid 26747] [client 162.158.154.173:10727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pflagabq.org"] [uri "/.htaccess"] [unique_id "aruPXtA6Qr4O6j4BRRoZ0gAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 08:08:04
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 04:08:00.795510 2026] [security2:error] [pid 21519:tid 21519] [client 162.158.154.173:9904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.h-vpastoralcharge.org"] [uri "/.htaccess"] [unique_id "artx4EWFMuju7hcSZ_Mh_wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 04:14:00
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 00:13:52.019504 2026] [security2:error] [pid 3091:tid 3091] [client 162.158.154.173:12497] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.thereisaplaceonearth.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.thereisaplaceonearth.com"] [uri "/index.php.bak"] [unique_id "ars7AAvBQrrj5zcaqZzVlwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 01:17:33
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 21:17:26.690634 2026] [security2:error] [pid 6610:tid 6610] [client 162.158.154.173:10860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "honigcpa.com"] [uri "/.htaccess"] [unique_id "arsRpjFbgC9fuO0aOYGMJgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 20:57:42
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 16:57:35.596669 2026] [security2:error] [pid 16344:tid 16344] [client 162.158.154.173:14331] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.henrietteg.com"] [uri "/.htaccess"] [unique_id "arrUv72fi6ZFLjFyxJGa_wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 13:57:48
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 09:57:43.522222 2026] [security2:error] [pid 1166:tid 1166] [client 162.158.154.173:10623] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeannieksmith.com"] [uri "/.htaccess"] [unique_id "arpyV00tSAPpLIYWrTTzUAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-09-22 14:41:16
(1 week ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 23:25:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:25:20.416899 2026] [security2:error] [pid 3907823:tid 3907898] [client 162.158.154.173:13226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jameskeeton.com"] [uri "/.git/config"] [unique_id "apDHYG8AqE5mwNkTF50CwQAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-27 18:58:23
(1 month ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 05:02:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 01:02:02.141018 2026] [security2:error] [pid 28844:tid 28844] [client 162.158.154.173:9535] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.tactara.net"] [uri "/.git/config"] [unique_id "aoU4ysu53ZLrtfnqQ3Y50QAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-18 09:01:26
(1 month ago)
Web App Attack
πΊπΈ
octageeks.com
2026-04-10 04:08:59
(5 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-20 08:42:13
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:42:08.001876 2026] [security2:error] [pid 24626:tid 24626] [client 162.158.154.173:10371] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oxford-gliding-club.abbeygardensllandudno.com"] [uri "/admin/.env"] [unique_id "ab0IYDRT0xJVSwlXr5ZmfwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack