๐ฉ๐ช
FD-IX
2026-10-01 08:43:28
(17 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ซ๐ท
Eldeberen
2026-10-01 07:03:53
(19 hours ago)
Vulnerability scan attempt through HTTP protocol
Web App Attack
๐ฉ๐ช
webko.si
2026-10-01 02:40:42
(23 hours ago)
RBG: Bruteforce web app access, URI detail: '/.git/HEAD'.
Web App Attack
Anonymous
2026-10-01 01:08:28
(1 day ago)
apache vulnerability scan
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-30 23:32:28
(1 day ago)
[01/Oct/2026:02:32:27 +0300] -- 141.101.76.165 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.en ...
show more
[01/Oct/2026:02:32:27 +0300] -- 141.101.76.165 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.local HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
mxbl
2026-09-30 23:00:11
(1 day ago)
Scanning for CMS vulnerabilities on a non-CMS system: /.git/HEAD
Web App Attack
๐ธ๐ฌ
anotherwatcher
2026-09-30 21:44:58
(1 day ago)
bad bot
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-30 15:46:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 11:46:38.200297 2026] [security2:error] [pid 22041:tid 22041] [client 141.101.76.165:11089] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.clossglobal.com"] [uri "/.env.production"] [unique_id "ar0u3sNwYWfCoGd65vpjNQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 15:22:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 11:22:33.220907 2026] [security2:error] [pid 3409:tid 3409] [client 141.101.76.165:13253] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.micahgartman.com"] [uri "/.env.production"] [unique_id "ar0pOeaxoJgbcVJuCaAN8wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 15:03:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 11:03:46.308708 2026] [security2:error] [pid 1413:tid 1413] [client 141.101.76.165:11035] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lisadodd.com"] [uri "/.svn/entries"] [unique_id "ar0k0m2LWEgz5XsDv1r3hQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 14:40:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 10:40:23.489936 2026] [security2:error] [pid 29589:tid 29589] [client 141.101.76.165:9663] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "giganticmediallc.com"] [uri "/.git/config"] [unique_id "ar0fV8jpSvBYudev65xWYgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-30 12:14:35
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 12:12:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 08:12:22.072964 2026] [security2:error] [pid 27507:tid 27507] [client 141.101.76.165:9707] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.inquisitivequincie.com"] [uri "/.svn/entries"] [unique_id "arz8pkik_50vnsBNc-4vigAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 10:56:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:56:03.727917 2026] [security2:error] [pid 24469:tid 24469] [client 141.101.76.165:11962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.innolympics.com"] [uri "/.git/HEAD"] [unique_id "arzqw5pb91ADw8dCsHp4xQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 09:11:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.76.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:11:13.221120 2026] [security2:error] [pid 22134:tid 22134] [client 141.101.76.165:9502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "infolinkqr.com"] [uri "/.env.backup"] [unique_id "arzSMc4ASQ9mEhdgYK1G_QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack