๐บ๐ธ
TPI-Abuse
2026-05-22 13:52:25
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 09:52:18.051094 2026] [security2:error] [pid 29558:tid 29558] [client 193.42.245.145:60383] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marinestorage.com"] [uri "/.wp-config.php.swp"] [unique_id "ahBfkvACnQ5ppqPMcwLnEAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-21 22:35:09
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 21 18:35:00.433091 2026] [security2:error] [pid 31117:tid 31117] [client 193.42.245.145:23861] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.plazahacienda.imerka.com.mx|F|2"] [data ".inc"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.plazahacienda.imerka.com.mx"] [uri "/wp-config.inc"] [unique_id "ag-IlFrIw7PB7dLfGW43-QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 16:49:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 12:49:05.255844 2026] [security2:error] [pid 21798:tid 21825] [client 193.42.245.145:48451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tomithai.com"] [uri "/wp-config.php.save"] [unique_id "ag3mAcy9mijH4ydOfZgtHwAAARc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 12:50:34
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 08:50:30.482955 2026] [security2:error] [pid 28449:tid 28449] [client 193.42.245.145:38271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cyqci.eu"] [uri "/wp-config.php.old"] [unique_id "ag2uFutnAGQ8cx9msImCYAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-05-19 00:06:22
(1 month ago)
Scanning/Probing (34)
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-04-30 20:11:33
(1 month ago)
[ThuApr3022:11:28.8165862026][security2:error][pid4107218:tid4107997][client193.42.245.145:0]ModSecu ...
show more
[ThuApr3022:11:28.8165862026][security2:error][pid4107218:tid4107997][client193.42.245.145:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mondo-it.ch\"][uri\"/webpack.config.js\"][unique_id\"afO3cAD6-rhRxLw_twkPGAAAARA\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-09-26 22:05:29
(8 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-09-12 00:00:14
(9 months ago)
(mod_security) mod_security (id:210350) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 193.42.245.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 11 19:59:57.596183 2025] [security2:error] [pid 18855:tid 18855] [client 193.42.245.145:44295] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||keithbowles.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "keithbowles.com"] [uri "/"] [unique_id "aMNifUZYUmzUV21TIkWpcAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack