๐บ๐ธ
TPI-Abuse
2026-08-21 13:54:26
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 09:54:20.437095 2026] [security2:error] [pid 16789:tid 16789] [client 141.101.96.2:13947] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.aifstudio.com"] [uri "/.git/HEAD"] [unique_id "aohYjALPpSYfZj9kzuLvAAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 10:27:02
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 06:26:57.657814 2026] [security2:error] [pid 11316:tid 11316] [client 141.101.96.2:10815] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.walterceron.com"] [uri "/.git/config"] [unique_id "aogn8VzTWrO8x1VGkS1eGwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 17:56:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 13:56:03.704098 2026] [security2:error] [pid 4346:tid 4346] [client 141.101.96.2:9991] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nolagardenmarket.com"] [uri "/.git/HEAD"] [unique_id "aoc_s3GIC8NErsE4Dt2sKAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 22:16:24
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 18:16:18.910980 2026] [security2:error] [pid 17704:tid 17704] [client 141.101.96.2:13062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.krankybitchguitars.com"] [uri "/.git/HEAD"] [unique_id "aoYrMs0dP9ONtcn1xl0FOQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 23:40:20
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 19:40:07.708592 2026] [security2:error] [pid 26387:tid 26387] [client 141.101.96.2:14294] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.eastmansmainecraft.com"] [uri "/.git/config"] [unique_id "aoTtV1T34lw6UyJWr_1CUgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 11:56:24
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 07:56:16.620452 2026] [security2:error] [pid 21270:tid 21270] [client 141.101.96.2:11943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rlharmongroup.com"] [uri "/.git/config"] [unique_id "aoRIYG4R94tjN09lP8GEEAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 00:25:47
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 20:25:40.025549 2026] [security2:error] [pid 6684:tid 6684] [client 141.101.96.2:11519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.maprada92.com"] [uri "/.git/config"] [unique_id "aoOmhJNOs5WO1CFNYwVGKAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 08:00:05
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:59:58.409887 2026] [security2:error] [pid 24144:tid 24175] [client 141.101.96.2:12371] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dermatologisthouston.com.aafm.us"] [uri "/.git/HEAD"] [unique_id "aoFt_m9WWiAOTA26f2WEUgAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-08-15 20:49:14
(6 days ago)
๐จ Recon detected (nft drop)
SRC=141.101.96.2
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journa ...
show more
๐จ Recon detected (nft drop)
SRC=141.101.96.2
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
acadeova
2026-08-14 13:47:57
(1 week ago)
๐จ Recon detected (nft drop)
SRC=141.101.96.2
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journa ...
show more
๐จ Recon detected (nft drop)
SRC=141.101.96.2
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ง๐ช
madeit
2026-08-05 06:29:13
(2 weeks ago)
Web App Attack
๐ฉ๐ช
acadeova
2026-08-01 07:56:14
(2 weeks ago)
๐จ Recon detected (nft drop)
SRC=141.101.96.2
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journa ...
show more
๐จ Recon detected (nft drop)
SRC=141.101.96.2
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
Sรฉfora Srl
2026-07-20 21:02:17
(1 month ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
Anonymous
2026-07-11 22:55:54
(1 month ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฆ๐ฑ
router.al
2026-05-17 06:00:42
(3 months ago)
05/17/2026-06:00:41.521145 141.101.96.2 Protocol: 6 ET WEB_SERVER PHP tags in HTTP POST
Hacking