๐บ๐ธ
TPI-Abuse
2026-10-01 06:06:18
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 02:06:12.854467 2026] [security2:error] [pid 31504:tid 31504] [client 162.158.155.18:10591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.amybeam.com"] [uri "/.htaccess"] [unique_id "ar34VBl6URT8PZH551gjjQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 10:59:13
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:59:08.719997 2026] [security2:error] [pid 13958:tid 13958] [client 162.158.155.18:14224] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.rodandreelpiercam.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.rodandreelpiercam.com"] [uri "/index.php.bak"] [unique_id "arzrfA2zKlGWvC7NCKTNiQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 10:42:30
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:42:24.419325 2026] [security2:error] [pid 30244:tid 30244] [client 162.158.155.18:10171] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "huboon.com"] [uri "/.htaccess"] [unique_id "arznkJQJDVOKcZbSjZ8m6wAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 16:41:20
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 12:41:16.252584 2026] [security2:error] [pid 25305:tid 25305] [client 162.158.155.18:13600] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.10mostwantedfugitives.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.10mostwantedfugitives.com"] [uri "/index.php.bak"] [unique_id "arvqLNBIqVbjND1ct224TAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 15:53:18
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 11:53:13.403792 2026] [security2:error] [pid 9902:tid 10115] [client 162.158.155.18:12079] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.a2zlns.com"] [uri "/wp-config.php.bak"] [unique_id "arve6XjcVq3uSB8cI9oPqQAAAgA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 11:40:46
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 07:40:44.120475 2026] [security2:error] [pid 11778:tid 11778] [client 162.158.155.18:9723] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.collectorcarconsultants.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.collectorcarconsultants.com"] [uri "/index.php.bak"] [unique_id "arujvJYealLgMBIIsGSxYwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 09:22:38
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 05:22:33.567984 2026] [security2:error] [pid 27012:tid 27012] [client 162.158.155.18:13071] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||iheldt.net|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "iheldt.net"] [uri "/index.php.bak"] [unique_id "aruDWdEAgbJp3im4rvZy7gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 14:20:55
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 10:20:49.043429 2026] [security2:error] [pid 2922:tid 2922] [client 162.158.155.18:13060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sigi.biz"] [uri "/wp-config.php.bak"] [unique_id "arp3wfYttVZiIT-bjpIGUgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 16:00:12
(1 month ago)
| SQL injection attempt.
Web App Attack
Hacking
SQL Injection
๐ง๐ช
madeit
2026-08-30 06:48:49
(1 month ago)
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-08-29 15:30:31
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ง๐ช
madeit
2026-08-23 03:48:03
(1 month ago)
Web App Attack
๐บ๐ธ
octageeks.com
2026-04-10 04:08:58
(5 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ง๐พ
lns.bz
2026-03-25 20:15:14
(6 months ago)
Too many 404 requests [BY]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 07:39:22
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 03:39:16.542199 2026] [security2:error] [pid 31380:tid 31380] [client 162.158.155.18:11193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rooksfamily.com"] [uri "/.env.example"] [unique_id "abz5pA-SsAj1LIENwkhbcQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack