🇺🇸
TPI-Abuse
2026-08-29 04:38:33
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:37:03.462295 2026] [security2:error] [pid 32414:tid 32414] [client 45.41.177.51:41703] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ftp.nbcnewsradio.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ftp.nbcnewsradio.com"] [uri "/public_html.db"] [unique_id "apJh7wS3uP_j22PXg0T0ngAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-01-17 15:22:04
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 10:21:56.621572 2026] [security2:error] [pid 8683:tid 8683] [client 45.41.177.51:33077] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.txt" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.nbcnewsradio.com"] [uri "/wp-config.txt"] [unique_id "aWupFFPqfhU-oCCkRsfQLAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 19:33:06
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 14:33:00.029641 2025] [security2:error] [pid 22840:tid 22937] [client 45.41.177.51:58797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kettlehill.com"] [uri "/.env"] [unique_id "aVLXbPUSdzJ-gbjPWKhbfQAAAIQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-13 13:47:24
(9 months ago)
(mod_security) mod_security (id:212620) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:212620) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 13 08:47:21.948942 2025] [security2:error] [pid 8116:tid 8116] [client 45.41.177.51:50591] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_COOKIES:svpnlang. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||ftp.nbcnewsradio.com|F|2"] [data "Matched Data: <script found within REQUEST_COOKIES:svpnlang: <script>alert('document.domain')</script>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "ftp.nbcnewsradio.com"] [uri "/wnm/login/login.json"] [unique_id "aRXhacDadyFSIg7SPYcZQQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇪
RoboSOC
2025-10-16 12:36:13
(10 months ago)
XAttacker Tool Prestashop Addons Arbitrary File Upload Vulnerability , PTR: PTR record not found
Hacking
🇺🇸
TPI-Abuse
2024-01-25 21:26:05
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 25 16:24:39.933743 2024] [security2:error] [pid 12511] [client 45.41.177.51:43551] [client 45.41.177.51] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||stdavids-media.com|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stdavids-media.com"] [uri "/ssl/localhost.key"] [unique_id "ZbLRl8dFnFOEZl-DIvv4pwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ps-center
2024-01-17 19:32:17
(2 years ago)
SS1: Web Attack GET /wp-admin/admin-ajax.php?action=qem_ajax_calendar&category=%3C%2Fscript%3E%3Cscr ...
show more
SS1: Web Attack GET /wp-admin/admin-ajax.php?action=qem_ajax_calendar&category=%3C%2Fscript%3E%3Cscript%3Ealert%28document.domain%29%3C%2Fscript%3E
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2023-12-12 23:06:28
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.41.177.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 12 18:05:26.394575 2023] [security2:error] [pid 22357:tid 46962308503296] [client 45.41.177.51:46621] [client 45.41.177.51] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kettlehill.kettlehill.com"] [uri "/wp-config.php.old"] [unique_id "ZXjnNkHfzJBxXMKBTcCiRAAAAcs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2023-11-27 12:55:09
(2 years ago)
| Common web attack.
Hacking
SQL Injection
Web App Attack