πΊπΈ
TPI-Abuse
2026-09-29 01:58:06
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 21:58:00.210991 2026] [security2:error] [pid 15508:tid 15508] [client 162.158.155.88:12772] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||berklie.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "berklie.com"] [uri "/index.php.bak"] [unique_id "arsbKCKXIblpfnyfsc7TlgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 22:56:04
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 18:56:00.438524 2026] [security2:error] [pid 10178:tid 10178] [client 162.158.155.88:9913] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jcrluthier.com"] [uri "/.htaccess"] [unique_id "arrwgID4HwHQ4zvyp38zggAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 19:05:42
(18 hours ago)
(mod_security) mod_security (id:210730) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 15:05:35.644257 2026] [security2:error] [pid 9419:tid 9419] [client 162.158.155.88:14021] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.luxandunion.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.luxandunion.com"] [uri "/index.php.bak"] [unique_id "arq6fyeKQRZSZNIfNnyV4AAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 15:30:51
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 11:30:46.346579 2026] [security2:error] [pid 6952:tid 6952] [client 162.158.155.88:11144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aupapierjaponais.com"] [uri "/.htaccess"] [unique_id "arqIJiPMtIeAI0r4xPbATgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-09-07 20:58:14
(3 weeks ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 05:37:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:37:25.732473 2026] [security2:error] [pid 6363:tid 6363] [client 162.158.155.88:11025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.manoli.cl"] [uri "/.git/config"] [unique_id "ao_NFXo2eiqeojvx7HFu0wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 16:29:29
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:29:23.176091 2026] [security2:error] [pid 4080:tid 4080] [client 162.158.155.88:9982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "convtek.com"] [uri "/.git/config"] [unique_id "ao3C4wu2qLwy9mCOgqMFywAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 16:33:52
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 12:33:48.345069 2026] [security2:error] [pid 13122:tid 13178] [client 162.158.155.88:12824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pmqualifications.aafm.us"] [uri "/.git/config"] [unique_id "aoxybCM0-q9_3D93ToHhqgAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-21 03:40:49
(1 month ago)
Web App Attack
π§πͺ
madeit
2026-08-06 05:05:52
(1 month ago)
Web App Attack
Anonymous
2026-04-24 21:05:01
(5 months ago)
Aggressive web scan
Web App Attack
Anonymous
2026-03-26 11:53:41
(6 months ago)
162.158.155.88 - - [26/Mar/2026:11:53:39 +0000] "GET /.envrc HTTP/2.0" 403 146 "-" "-" "-" "-"
...
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 14:49:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 10:49:18.002246 2026] [security2:error] [pid 24906:tid 24906] [client 162.158.155.88:10165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "doug-riley.net"] [uri "/.git/logs/HEAD"] [unique_id "ab6v7lwBrnCUei8YqFW6-QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 06:53:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 02:53:05.304073 2026] [security2:error] [pid 9230:tid 9230] [client 162.158.155.88:11286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.pawlewicz.org"] [uri "/.git/refs/heads/main"] [unique_id "ab5AUbmLOz4n3b1CSSeLsgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-21 02:49:12
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.155.88 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 22:49:06.183951 2026] [security2:error] [pid 19818:tid 19818] [client 162.158.155.88:13600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.gslandservices.com"] [uri "/.env.test"] [unique_id "ab4HIg16cv1pZr3IRndfuwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack