πΊπΈ
TPI-Abuse
2026-08-01 22:00:12
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 01 17:59:45.239601 2026] [security2:error] [pid 3417436:tid 3417536] [client 91.232.137.101:34899] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||ftp.kettlehill.net|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "ftp.kettlehill.net"] [uri "/wp-content/uploads/dump.sql"] [unique_id "am5sUXp-MoQ4EBNgEsP2twAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-31 16:02:19
(1 day ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-07-27 22:02:12
(5 days ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-07-26 14:02:43
(6 days ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-07-25 10:03:27
(1 week ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-07-22 12:02:35
(1 week ago)
Web attack
Bad Web Bot
Web App Attack
π©πͺ
Phenix Info
2026-07-20 07:30:43
(1 week ago)
SmallGuard.fr/Prestashop Massive 403
Web App Attack
Anonymous
2026-07-20 00:15:15
(1 week ago)
Web attack
Bad Web Bot
Web App Attack
π©πͺ
Phenix Info
2026-07-17 06:56:59
(2 weeks ago)
SmallGuard.fr/Prestashop Massive 403
Web App Attack
Anonymous
2026-07-13 08:03:13
(2 weeks ago)
Web attack
Bad Web Bot
Web App Attack
Anonymous
2026-07-12 06:11:41
(3 weeks ago)
Web attack
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-02 03:45:25
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 23:45:11.559676 2026] [security2:error] [pid 3387:tid 3696] [client 91.232.137.101:43461] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kettlehill.com|F|2"] [data ".db"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kettlehill.com"] [uri "/src.db"] [unique_id "akXex_kY5dLvwFm9Z5l9lgAAAEw"], referer: http://kettlehill.com/src.db
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-01 02:05:44
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 22:02:02.198976 2026] [security2:error] [pid 17655:tid 17765] [client 91.232.137.101:36311] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.txt" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.kettlehill.net"] [uri "/wp-config.txt"] [unique_id "ahzoGsKV5JcfxL4sumlEagAAAQ8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Phenix Info
2026-03-09 02:47:53
(4 months ago)
SmallGuard.fr/Prestashop Massive 403
Web App Attack
πΊπΈ
TPI-Abuse
2025-12-01 06:08:16
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.232.137.101 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 01 01:07:51.696759 2025] [security2:error] [pid 25970:tid 26020] [client 91.232.137.101:39289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kettlehill.com"] [uri "/sample.htaccess"] [unique_id "aS0wt5mi-m8ypGFmmHfC2gAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack