Anonymous
2026-10-01 14:02:57
(1 day ago)
Web attack
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 01:47:40
(2 days ago)
(mod_security) mod_security (id:212620) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:212620) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 21:47:36.427168 2026] [security2:error] [pid 7503:tid 7506] [client 83.229.107.255:39603] ModSecurity: Access denied with code 403 (phase 2). Pattern match "<script\\\\b" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/07_XSS_XSS.conf"] [line "65"] [id "212620"] [rev "4"] [msg "COMODO WAF: Cross-site Scripting (XSS) Attack||kettlehill.net|F|2"] [data "Matched Data: <script found within REQUEST_URI: /login.php?p=<script>alert(1)</script>"] [severity "CRITICAL"] [tag "CWAF"] [tag "XSS"] [hostname "kettlehill.net"] [uri "/login.php"] [unique_id "ar27uMAItDKx83kbLgnquAAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-30 00:06:37
(3 days ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-09-23 18:02:52
(1 week ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 04:23:33
(1 week ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 02:24:37
(1 week ago)
Web attack
Bad Web Bot
Web App Attack
πΊπΈ
SX Communications
2026-09-18 01:52:42
(2 weeks ago)
Blocked abusive HTTP application-layer DoS / botnet traffic from 83.229.107.255: traffic from this a ...
show more
Blocked abusive HTTP application-layer DoS / botnet traffic from 83.229.107.255: traffic from this address continues high-cost dynamic page and feed requests at abusive rates via TCP/HTTPS despite edge block responses. Likely compromised end-user host.
show less
DDoS Attack
Bad Web Bot
Exploited Host
Anonymous
2026-09-17 00:20:30
(2 weeks ago)
Web attack
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 17:42:57
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 13:41:46.151916 2026] [security2:error] [pid 1326350:tid 1326438] [client 83.229.107.255:35563] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kettlehill.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kettlehill.com"] [uri "/backups.db"] [unique_id "apcOWj_lpu_SSQxLT6XPrAAAAUM"], referer: http://kettlehill.com/backups.db
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-02 04:02:24
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 00:02:18.585463 2026] [security2:error] [pid 24091:tid 24200] [client 83.229.107.255:42775] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kettlehill.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kettlehill.com"] [uri "/footer.php.bak"] [unique_id "akXiytCAl3_9ufpTltjPQgAAAM4"], referer: https://www.kettlehill.com/footer.php.bak
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-01 02:05:42
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 83.229.107.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 22:02:06.129650 2026] [security2:error] [pid 17655:tid 17766] [client 83.229.107.255:37559] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kettlehill.com"] [uri "/.wp-config.php.swp"] [unique_id "ahzoHsKV5JcfxL4sumlEowAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-06-21 16:20:02
(1 year ago)
| Suspicious URL access.
Hacking
SQL Injection
Web App Attack