๐ฉ๐ช
rh24
2026-05-03 01:44:17
(1 month ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 45.41.177.86 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 45.41.177.86 (US/United States/-): (CF_ENABLE)
show less
Bad Web Bot
Anonymous
2026-05-02 02:03:17
(1 month ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-17 15:22:53
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 10:22:51.397469 2026] [security2:error] [pid 11003:tid 11003] [client 45.41.177.86:48409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.nbcnewsradio.com"] [uri "/_.htaccess"] [unique_id "aWupS9eBxIJqJXdaqgQvPQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 19:43:36
(5 months ago)
(mod_security) mod_security (id:211190) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:211190) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 14:43:29.272239 2025] [security2:error] [pid 29977:tid 29983] [client 45.41.177.86:51445] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||ftp.kettlehill.net|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /poc.jsp?cmd=cat+%2Fetc%2Fpasswd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.kettlehill.net"] [uri "/poc.jsp"] [unique_id "aVLZ4TWelXmsIDHwJWbmWAAAAYQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-28 00:46:41
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 19:46:31.574400 2025] [security2:error] [pid 14317:tid 14326] [client 45.41.177.86:37623] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.staging.kettlehill.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "staging.kettlehill.com"] [uri "/wp-content/mysql.sql"] [unique_id "aSjw5wNdCiHTygBWacY8mQAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-08-31 06:59:40
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 31 02:59:34.136704 2025] [security2:error] [pid 3023785:tid 3023800] [client 45.41.177.86:45279] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.kettlehill.com"] [uri "/.env.ftp"] [unique_id "aLPy1iP1h8sE8WPW3flsfgAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-01-25 21:25:14
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 25 16:24:28.095828 2024] [security2:error] [pid 20330] [client 45.41.177.86:53485] [client 45.41.177.86] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||stdavids-media.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "stdavids-media.com"] [uri "/settings.php.bak"] [unique_id "ZbLRjLJRFcar6vNYufNxswAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2023-12-06 03:41:25
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 45.41.177.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 05 22:40:28.141926 2023] [security2:error] [pid 25486:tid 47074311530240] [client 45.41.177.86:35779] [client 45.41.177.86] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.kettlehill.com"] [uri "/wp-config.php.original"] [unique_id "ZW_tLFl-pKUdHTOT1oIWlwAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2023-11-27 13:15:15
(2 years ago)
| Common web attack.
Hacking
SQL Injection
Web App Attack