๐บ๐ธ
TPI-Abuse
2026-09-30 16:27:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 12:27:44.190303 2026] [security2:error] [pid 17942:tid 17942] [client 162.158.155.129:11225] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.agworldmissions.org"] [uri "/wp-config.php"] [unique_id "ar04gOY55tZHscHfWqebawAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 13:28:49
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 09:28:44.019190 2026] [security2:error] [pid 9668:tid 9668] [client 162.158.155.129:10418] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.canebrakes.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.canebrakes.com"] [uri "/index.php.bak"] [unique_id "ar0OjOlNepiQqNfdmxvRQwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 10:29:35
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:29:27.775852 2026] [security2:error] [pid 24020:tid 24020] [client 162.158.155.129:12810] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fishleadership.org|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fishleadership.org"] [uri "/index.php.bak"] [unique_id "arzkh9SCfMQrXC8_uk5TUAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 02:50:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 22:50:26.418038 2026] [security2:error] [pid 20815:tid 20815] [client 162.158.155.129:10670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.avrknives.com"] [uri "/.htaccess"] [unique_id "arx48shuB4iAmsofzwnYOAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 18:31:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 14:31:06.309314 2026] [security2:error] [pid 18675:tid 18675] [client 162.158.155.129:10293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.glendaleheritage.org"] [uri "/.htaccess"] [unique_id "arwD6mci-eMkDgUFAqr1XgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 05:18:56
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 01:18:51.773564 2026] [security2:error] [pid 7591:tid 7591] [client 162.158.155.129:9769] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||somaflow.okwellbeing.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "somaflow.okwellbeing.com"] [uri "/index.php.bak"] [unique_id "artKOyzRCHpDJUOJS24FbgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-28 13:20:06
(3 days ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
wimaxnz
2026-06-11 05:22:07
(3 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
๐ณ๐ฑ
COMPLEX
2026-06-11 00:43:07
(3 months ago)
Unsolicited TCP traffic | Action: DROP | Port 2087
Brute-Force
๐บ๐ธ
octageeks.com
2026-04-10 04:08:26
(5 months ago)
Wordpress malicious attack:[octausername]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 01:02:19
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 21:02:16.032710 2026] [security2:error] [pid 8503:tid 8503] [client 162.158.155.129:10609] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sekelconsulting.com.z-mgmt.com"] [uri "/.env.php"] [unique_id "ab3uGAudMzBu3WM0z2vllQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 08:21:35
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:21:25.138054 2026] [security2:error] [pid 12813:tid 12813] [client 162.158.155.129:10631] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.bb103.us"] [uri "/.env"] [unique_id "ab0DhbbhauJNcGbbj2B7kwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 08:06:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:06:14.484913 2026] [security2:error] [pid 5172:tid 5172] [client 162.158.155.129:11173] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.darkestdaysclan.com"] [uri "/.env_settings"] [unique_id "abz_9hMVFl8DjmUg_abC5AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 01:54:37
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 21:54:29.653721 2026] [security2:error] [pid 3246:tid 3246] [client 162.158.155.129:13888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "margroberts.com"] [uri "/.env.local.backup"] [unique_id "abyo1U6r5xnJY30YZXtiAwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-19 11:39:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 19 07:39:42.456141 2026] [security2:error] [pid 9275:tid 9275] [client 162.158.155.129:11585] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.braunhausmedia.com"] [uri "/.env.dist"] [unique_id "abvgfloU5Z8jeYSxkUj_zwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack