๐บ๐ธ
TPI-Abuse
2026-09-30 13:52:48
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 09:52:42.874258 2026] [security2:error] [pid 28172:tid 28172] [client 162.158.154.206:9684] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mrsreclamation.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mrsreclamation.com"] [uri "/index.php.bak"] [unique_id "ar0UKtUuBazmonuKmSD9igAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 10:57:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:57:05.788677 2026] [security2:error] [pid 2787:tid 2787] [client 162.158.154.206:11437] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frenchla.com"] [uri "/.htaccess"] [unique_id "arzrAdJU5I9ADAcRvYKWEgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 01:29:08
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 21:29:03.506844 2026] [security2:error] [pid 2104:tid 2126] [client 162.158.154.206:9316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sattraffic.com"] [uri "/wp-config.php"] [unique_id "arxl33L6y_2N-NSeKdwZqQAAAJI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 01:12:33
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 21:12:25.638413 2026] [security2:error] [pid 24271:tid 24271] [client 162.158.154.206:9988] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "acpb.net"] [uri "/wp-config.php.bak"] [unique_id "arxh-cQ3FnGCHEwk83421gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 23:31:51
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 19:31:46.146386 2026] [security2:error] [pid 25144:tid 25144] [client 162.158.154.206:11114] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.halotoys.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.halotoys.com"] [uri "/index.php.bak"] [unique_id "arxKYojsandy9y93_qpmZAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 11:08:38
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 07:08:34.318882 2026] [security2:error] [pid 26336:tid 26336] [client 162.158.154.206:9336] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||valkyriepanthers.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "valkyriepanthers.com"] [uri "/index.php.bak"] [unique_id "arucMgxA2zKVJonyG2uGCAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 01:23:34
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 21:23:26.681049 2026] [security2:error] [pid 12454:tid 12498] [client 162.158.154.206:13656] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mwcecommerce.com"] [uri "/wp-config.php.bak"] [unique_id "arsTDgfnCsl20LD08IQ1XAAAAY0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-26 19:45:33
(6 days ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
Anonymous
2026-09-21 06:20:01
(1 week ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
๐จ๐ฟ
Prcek
2026-09-19 15:59:31
(1 week ago)
PortScan:HOST=162.158.154.206,DPORTS=443
Port Scan
๐ง๐ช
madeit
2026-09-14 20:52:03
(2 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 14:41:01
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 10:40:54.738832 2026] [security2:error] [pid 21580:tid 21589] [client 162.158.154.206:13596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.darkestmoonart.com"] [uri "/.git/HEAD"] [unique_id "ao769ktux3OQnHbadaPnCAAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-22 21:18:46
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 02:31:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.154.206 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 22:31:26.736836 2026] [security2:error] [pid 19116:tid 19116] [client 162.158.154.206:10903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cidv.net"] [uri "/.git/HEAD"] [unique_id "aoUVfomnuqRxSJe8skI1XwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-29 07:00:00
(2 months ago)
Apache probe; attempts=22; exact paths: /.env | /.env.backup | /.env.bak | /.env.dev | /.env.example ...
show more
Apache probe; attempts=22; exact paths: /.env | /.env.backup | /.env.bak | /.env.dev | /.env.example | /.env.local | /.env.old | /.env.production | /.env.swp | /.git-credentials | /.git/HEAD | /.git/config | /actuator | /actuator/configprops | /actuator/mappings | /admin/.env | /api/.env | /backend/.env | /config/.env | /core/.env | /public/.env | /web/.env
show less
Web App Attack