🇺🇸
TPI-Abuse
2026-08-28 22:46:50
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:46:23.520437 2026] [security2:error] [pid 24742:tid 24742] [client 45.43.191.169:35519] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mail.nbcnewsradio.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mail.nbcnewsradio.com"] [uri "/conf/conf.db"] [unique_id "apIPv8Kq_lYHK1uhLshUAwAAAGs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-01-17 04:58:52
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 16 23:58:47.118215 2026] [security2:error] [pid 20440:tid 20440] [client 45.43.191.169:59667] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.nbcnewsradio.com"] [uri "/static../.git/config"] [unique_id "aWsXB6sNz90UF-0UkZMzRwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-29 19:39:12
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 14:39:03.968407 2025] [security2:error] [pid 29977:tid 29986] [client 45.43.191.169:43041] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.kettlehill.com"] [uri "/sample.htaccess"] [unique_id "aVLY1zWelXmsIDHwJWbfoAAAAYc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-12-02 23:18:20
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 02 18:18:14.321300 2025] [security2:error] [pid 8632:tid 8632] [client 45.43.191.169:44777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autoconfig.farmers123.com"] [uri "/.env.farmers123"] [unique_id "aS9ztlTHBFl47VL_RZ0Z2wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-11-01 14:40:54
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Nov 01 10:40:46.795681 2025] [security2:error] [pid 8590:tid 8632] [client 45.43.191.169:52571] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kettlehill.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kettlehill.com"] [uri "/....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\....\\\\windows\\\\win.ini"] [unique_id "aQYb7nl6EaMmM6sQysSUlAAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-07-27 01:29:24
(1 year ago)
(mod_security) mod_security (id:210410) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210410) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 26 21:29:18.898223 2025] [security2:error] [pid 729659:tid 729727] [client 45.43.191.169:51761] ModSecurity: Access denied with code 403 (phase 2). Found 1 byte(s) in ARGS:file outside range: 1-255. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "95"] [id "210410"] [rev "4"] [msg "COMODO WAF: Invalid character in request||www.kettlehill.net|F|3"] [data "ARGS:file=;echo CVE-2023-23333|rev\\x00.zip"] [severity "ERROR"] [tag "CWAF"] [tag "Protocol"] [hostname "www.kettlehill.net"] [uri "/downloader.php"] [unique_id "aIWA7n2RRV3bCvyhjSKYhgAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-05-29 23:09:54
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 29 19:09:50.030743 2025] [security2:error] [pid 3719192:tid 3719192] [client 45.43.191.169:37717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.farmers123.com"] [uri "/wp-config.php.txt"] [unique_id "aDjpPgYR-1wrRKJvDAm_EAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2025-04-19 05:23:58
(1 year ago)
(mod_security) mod_security (id:211190) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 19 01:23:34.694681 2025] [security2:error] [pid 22650:tid 22653] [client 45.43.191.169:43161] [client 45.43.191.169] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||www.blog.spinningdesigns.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /tools/sourceViewer/index.html?filename=..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.spinningdesigns.com"] [uri "/tools/sourceViewer/index.html"] [unique_id "aAMzVsLYwl69KqC_78iZXwAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-02-27 17:30:20
(1 year ago)
| XSS (Cross Site Scripting) attempt.
Hacking
SQL Injection
Web App Attack
🇺🇸
TPI-Abuse
2025-02-27 14:30:10
(1 year ago)
(mod_security) mod_security (id:211190) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 45.43.191.169 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 27 09:29:27.184559 2025] [security2:error] [pid 27063:tid 27228] [client 45.43.191.169:43725] [client 45.43.191.169] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||kettlehill.net|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /wp-content/plugins/site-editor/editor/extensions/pagebuilder/includes/ajax_shortcode_pattern.php?ajax_path=/etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kettlehill.net"] [uri "/wp-content/plugins/site-editor/editor/extensions/pagebuilder/includes/ajax_shortcode_pattern.php"] [unique_id "Z8B2x8nGgNPGej7DPuf9ewAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇬
oncord
2024-09-02 04:33:59
(1 year ago)
Form spam
Web Spam
🇦🇺
MAGIC
2024-08-31 06:03:30
(1 year ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
🇸🇬
oncord
2024-08-29 19:43:54
(2 years ago)
Form spam
Web Spam
Anonymous
2024-08-25 14:18:07
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
🇺🇸
nowyouknow
2024-08-24 03:50:18
(2 years ago)
(From [email protected] ) Unlock a tax credit of up to $32,220 when you partner with SETC PRO ...
show more
(From [email protected] ) Unlock a tax credit of up to $32,220 when you partner with SETC PROS, but don't wait—this opportunity expires in April 2025. Secure your savings and optimize your staffing needs today!
-- Visit now: https://bit.ly/setcpros
You can unsubscribe by sending an email with subject "Unsubscribe" to [email protected]
Neutorstrasse 38, Tragail, BURGENLAND, Austria, 9713
show less
Phishing
Web Spam