๐บ๐ธ
TPI-Abuse
2026-09-30 04:01:38
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:01:30.715877 2026] [security2:error] [pid 11665:tid 11665] [client 162.158.155.54:12138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.informant-systems.com"] [uri "/.htaccess"] [unique_id "aryJmhXZlYZuMacPybEgbAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 01:26:19
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 21:26:12.049976 2026] [security2:error] [pid 13488:tid 13488] [client 162.158.155.54:13280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bolivarbulletintimes.com"] [uri "/.htaccess"] [unique_id "arxlNBDWuRuGOGsRxDeuhwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 19:37:38
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:37:31.642888 2026] [security2:error] [pid 9550:tid 9550] [client 162.158.155.54:12244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.register-boat-germany.com"] [uri "/.htaccess"] [unique_id "arwTe2SF3HBdhwRtSX3sZgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 10:31:19
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 06:31:13.875570 2026] [security2:error] [pid 24221:tid 24221] [client 162.158.155.54:10620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.maffiniandbearce.com"] [uri "/wp-config.php"] [unique_id "aruTcXunMuh6YzkJ1nDLlQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-28 17:41:22
(1 day ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 09:48:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 05:48:15.301103 2026] [security2:error] [pid 23387:tid 23387] [client 162.158.155.54:11873] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "firebelly.org"] [uri "/.htaccess"] [unique_id "aro332yvvXa_yULgztktLwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-07 20:18:49
(3 weeks ago)
Web App Attack
Anonymous
2026-07-09 18:00:00
(2 months ago)
162.158.155.54 - - [09/Jul/2026:19:59:52 +0200] "GET /xxx.php HTTP/1.1" 404 124 "-" "-"
162.158.155. ...
show more
162.158.155.54 - - [09/Jul/2026:19:59:52 +0200] "GET /xxx.php HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:52 +0200] "GET /wp-admin/css/colors/blue/ HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:52 +0200] "GET //wp-includes/block-bindings/ HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:53 +0200] "GET /file.php? HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:54 +0200] "GET /file31.php HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:54 +0200] "GET /file15.php HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:55 +0200] "GET /wp-admin/css/colors/midnight/about.php HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:55 +0200] "GET /solo1.php HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:55 +0200] "GET /2P.update.php HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:19:59:56 +0200] "GET /insc.php HTTP/1.1" 404 124 "-" "-"
162.158.155.54 - - [09/Jul/2026:1
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-07-02 04:52:46
(2 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 08:43:05
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 04:43:02.021267 2026] [security2:error] [pid 10981:tid 10981] [client 162.158.155.54:22066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "casalaaldehuela.com"] [uri "/.env.old"] [unique_id "ajUBFrMdYz7s_kZzVDLBbwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-04-28 17:51:08
(5 months ago)
๐จ Recon detected (nft drop)
SRC=162.158.155.54
Observed=TCP dpt=8443 in=enp0s6 ttl=57
Time=recent(jo ...
show more
๐จ Recon detected (nft drop)
SRC=162.158.155.54
Observed=TCP dpt=8443 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
octageeks.com
2026-04-09 04:10:06
(5 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
Anonymous
2026-03-26 11:53:43
(6 months ago)
162.158.155.54 - - [26/Mar/2026:11:53:40 +0000] "GET /.env.dev HTTP/1.1" 403 146 "-" "-" "-" "-"
.. ...
show more
162.158.155.54 - - [26/Mar/2026:11:53:40 +0000] "GET /.env.dev HTTP/1.1" 403 146 "-" "-" "-" "-"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 08:10:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 04:10:05.493988 2026] [security2:error] [pid 5836:tid 5836] [client 162.158.155.54:10097] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beetreelabs.com"] [uri "/.env.example"] [unique_id "ab0A3ebghUDDlVIfutsxOgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-20 06:52:34
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.54 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 02:52:27.455085 2026] [security2:error] [pid 19023:tid 19023] [client 162.158.155.54:10762] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.badwaterclaims.com"] [uri "/config/.env.local"] [unique_id "abzuq4CBwezNQx0v8tLoUwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack