๐ฌ๐ง
sandra361
2026-06-06 16:21:01
(3 months ago)
Port scan detected: 7 attempts across 1 ports (443). | Evidence: GHOST_SCAN:IN=enp1s0f0 OUT= SRC=141 ...
show more
Port scan detected: 7 attempts across 1 ports (443). | Evidence: GHOST_SCAN:IN=enp1s0f0 OUT= SRC=141.101.104.93 LEN=60 TOS=0x00 PREC=0x00 TTL=55 ID=52048 DF PROTO=TCP SPT=10109 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
show less
Port Scan
๐ฌ๐ง
sandra361
2026-05-28 03:20:02
(3 months ago)
Port scan detected: 7 attempts across 1 ports (443). | Evidence: GHOST_SCAN:IN=enp1s0f0 OUT= SRC=141 ...
show more
Port scan detected: 7 attempts across 1 ports (443). | Evidence: GHOST_SCAN:IN=enp1s0f0 OUT= SRC=141.101.104.93 LEN=60 TOS=0x00 PREC=0x00 TTL=54 ID=4291 DF PROTO=TCP SPT=12636 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
show less
Port Scan
๐ท๐ด
ReporTR
2026-02-05 18:10:22
(7 months ago)
Repeated malicious activity detected by Fail2Ban jail 'plesk-apache'. TCP connection completed. IP b ...
show more
Repeated malicious activity detected by Fail2Ban jail 'plesk-apache'. TCP connection completed. IP banned.
show less
Hacking
Web App Attack
๐ท๐ธ
iphouse
2026-01-20 10:30:05
(7 months ago)
Failed login attempt detected by Fail2Ban in plesk-apache jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-17 13:22:37
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 17 08:22:33.856564 2026] [security2:error] [pid 2319214:tid 2319214] [client 141.101.104.93:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.webuildbeaches.com"] [uri "/.env"] [unique_id "aWuNGc87dsX67ZskKVTU2gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-07-24 07:06:02
(1 year ago)
wp admin page access attempt
...
Hacking
Web App Attack
Anonymous
2025-04-25 00:56:31
(1 year ago)
Ports: 80,443; Direction: 1; Trigger: LF_CXS
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2025-03-16 23:16:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 16 19:16:28.896508 2025] [security2:error] [pid 4036:tid 4036] [client 141.101.104.93:32762] [client 141.101.104.93] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.pixacast.com"] [uri "/local/.env"] [unique_id "Z9dbzHoxx0Maus2LazN_QgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-03-13 07:18:40
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-10 08:53:45
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 10 04:53:40.030036 2025] [security2:error] [pid 3762668:tid 3762668] [client 141.101.104.93:50368] [client 141.101.104.93] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.triplejrealty.com"] [uri "/dev/.env"] [unique_id "Z86olLxq0kRlrx4mpyvuoQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-01 13:07:34
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 01 08:07:23.692769 2025] [security2:error] [pid 968:tid 968] [client 141.101.104.93:35250] [client 141.101.104.93] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.swarnar.com"] [uri "/admin/.env"] [unique_id "Z8MGi2O0szeJJnXSgkbZSQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-02-16 02:48:47
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-02-09 19:06:46
(1 year ago)
Port probe to tcp/80 (http)
[srv125]
Port Scan
Bad Web Bot
Web App Attack
Anonymous
2024-11-09 00:11:05
(1 year ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2024-10-27 11:45:18
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 27 07:45:12.409668 2024] [security2:error] [pid 27952:tid 27952] [client 141.101.104.93:29370] [client 141.101.104.93] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gibitdigital.com"] [uri "/.env"] [unique_id "Zx4nyHC7RP0PFTJ76ZasVwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack