Anonymous
2026-08-06 19:56:00
(1 month ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
๐ฉ๐ช
acadeova
2026-08-02 20:30:05
(1 month ago)
๐จ Recon detected (nft drop)
SRC=141.101.104.97
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=141.101.104.97
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ท๐ด
ReporTR
2026-02-05 16:11:42
(7 months ago)
Repeated malicious activity detected by Fail2Ban jail 'plesk-apache'. TCP connection completed. IP b ...
show more
Repeated malicious activity detected by Fail2Ban jail 'plesk-apache'. TCP connection completed. IP banned.
show less
Hacking
Web App Attack
๐ฌ๐ง
[email protected]
2026-01-01 02:41:06
(8 months ago)
aenetworks.infoaware.com:80 141.101.104.97 - - [01/Jan/2026:02:41:06 +0000] "GET /.git/config HTTP/1 ...
show more
aenetworks.infoaware.com:80 141.101.104.97 - - [01/Jan/2026:02:41:06 +0000] "GET /.git/config HTTP/1.1" 200 900 "-" "Go-http-client/1.1"
aenetworks.infoaware.com:80 141.101.104.97 - - [01/Jan/2026:02:41:06 +0000] "GET /.git/refs/heads/IOMAD_401_STABLE HTTP/1.1" 200 363 "-" "Go-http-client/1.1"
aenetworks.infoaware.com:80 141.101.104.97 - - [01/Jan/2026:02:41:06 +0000] "GET /.git/index HTTP/1.1" 200 4649760 "-" "Go-http-client/1.1"
...
show less
Web App Attack
Anonymous
2025-08-23 17:34:28
(1 year ago)
wp admin page access attempt
...
Hacking
Web App Attack
Anonymous
2025-07-24 06:37:07
(1 year ago)
wp admin page access attempt
...
Hacking
Web App Attack
๐บ๐ธ
mawan
2025-03-17 17:03:15
(1 year ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ต๐ฐ
sbk97 (https://sayor.net)
2025-02-20 19:34:04
(1 year ago)
"GET / HTTP/2.0 --- Reported by sayor.online Network Telescope"
Web Spam
Hacking
Web App Attack
๐ณ๐ฑ
Study Bitcoin ๐ค
2025-02-10 04:24:39
(1 year ago)
Port probe to tcp/443 (https)
[srv125]
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-09-20 14:34:03
(1 year ago)
Incoming Layer 7 Flood Detected
DDoS Attack
๐บ๐ธ
TPI-Abuse
2024-09-17 13:32:26
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 17 09:32:21.410122 2024] [security2:error] [pid 19021:tid 19021] [client 141.101.104.97:31354] [client 141.101.104.97] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "saxarose.com"] [uri "/sites/all/libraries/mailchimp/.env"] [unique_id "ZumE5VdB8jH9WjE3qaSjAwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2024-08-20 09:30:05
(2 years ago)
| CMS (WordPress or Joomla) brute force attempt 10 times (rewritten)
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-07-10 08:01:32
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 10 04:01:25.587722 2024] [security2:error] [pid 21816] [client 141.101.104.97:13338] [client 141.101.104.97] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.christechsupport.net"] [uri "/.git/config"] [unique_id "Zo4_1QEOevTZ6e7qN_nxrgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-16 15:16:31
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 16 11:16:27.199038 2024] [security2:error] [pid 30024] [client 141.101.104.97:53212] [client 141.101.104.97] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "islamujeresaquafit.com"] [uri "/.git/config"] [unique_id "ZfW3yxBtuffMvKo7zPUJdgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-13 00:28:35
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.104.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 12 19:28:28.440681 2024] [security2:error] [pid 12801] [client 141.101.104.97:35932] [client 141.101.104.97] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.rodrigoaldecoa.com"] [uri "/.git/config"] [unique_id "Zcq3rDeSQPNmqXxPJvAogAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack