๐บ๐ธ
TPI-Abuse
2026-08-30 10:03:59
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 06:03:52.685359 2026] [security2:error] [pid 5787:tid 5787] [client 141.101.96.66:12738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "krugmans.com"] [uri "/.git/config"] [unique_id "apQACOJeztCjVUk4MZQtnAAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 08:42:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 04:42:26.625950 2026] [security2:error] [pid 11453:tid 11453] [client 141.101.96.66:12347] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dinogirl.com"] [uri "/.git/config"] [unique_id "apPs8iO_8AhyGaeos-dm2QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:06:57
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:06:49.616227 2026] [security2:error] [pid 24688:tid 24688] [client 141.101.96.66:9548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.voidpope.com"] [uri "/.git/HEAD"] [unique_id "ao_F6Z--dsfzTfRzvtCbLwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:48:01
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:47:54.005119 2026] [security2:error] [pid 19902:tid 20029] [client 141.101.96.66:12917] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ianajewellery.com"] [uri "/.git/config"] [unique_id "ao25KhTYr0EgOzI6nV9FhAAAAdQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 06:36:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 02:36:08.528029 2026] [security2:error] [pid 10380:tid 10380] [client 141.101.96.66:11378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oficinasydespachosmurcia.com"] [uri "/.git/HEAD"] [unique_id "ao032FtjqFNudzjXBN2-rgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 06:49:33
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 02:49:27.121981 2026] [security2:error] [pid 27305:tid 27305] [client 141.101.96.66:10861] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.friendlyfarmforfun.com"] [uri "/.git/config"] [unique_id "aof092LxXxqXp6vGByIsGwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 08:50:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 04:50:19.200950 2026] [security2:error] [pid 30371:tid 30371] [client 141.101.96.66:9787] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.sawmat.com"] [uri "/.git/HEAD"] [unique_id "aoa_y4a_wivbNnbphlOZHgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 01:37:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 21:37:01.225137 2026] [security2:error] [pid 6778:tid 6778] [client 141.101.96.66:10787] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.scottwithers.xyz"] [uri "/.git/HEAD"] [unique_id "aoZaPbYtMLY4_68n7-jajQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:02:53
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:02:44.633108 2026] [security2:error] [pid 29235:tid 29256] [client 141.101.96.66:14052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blastfuturepress.com"] [uri "/.git/config"] [unique_id "aoKyFMwEy-CzjmaJwfHorQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:58:51
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:58:43.545081 2026] [security2:error] [pid 3544:tid 3544] [client 141.101.96.66:14005] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lonescouting.us"] [uri "/.git/HEAD"] [unique_id "aoFts72iyOA3XCWSBGba0wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:25:32
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:25:26.333159 2026] [security2:error] [pid 26591:tid 26591] [client 141.101.96.66:13855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.bccnews.us"] [uri "/.git/config"] [unique_id "aoFl5kHkY6OnwzW6CKCmWgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-05 03:59:15
(4 weeks ago)
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 month ago)
Automated Apache web application probing in selected 24h window; attempts=49, unique_paths=49, error ...
show more
Automated Apache web application probing in selected 24h window; attempts=49, unique_paths=49, error_responses=3; targets include WordPress, .env/.git, phpMyAdmin, autodiscover, wpad.dat and related probe paths.
show less
Web App Attack
Anonymous
2026-07-29 07:00:00
(1 month ago)
Apache probe; attempts=74; exact paths: /2022/.env | /.env.save | /.env.staging | /.git/description ...
show more
Apache probe; attempts=74; exact paths: /2022/.env | /.env.save | /.env.staging | /.git/description | //xmlrpc.php?rsd | /__tests__/test-become/.env | /actuator/health | /api/.env.staging | /app/.env.staging | /app/config/.env.production | /back/.env.local | /back/.env.production | /config/.env.staging | /config/db.env | /credentials/.env.staging | /customers/.env | /data/.env | /database/.env | /dev/.env | /env/.env | /forums/.env | /home/ec2-user/.conda/aws/.env | /home/ec2-user/.conda/bin/.env | /home/ec2-user/.config/aws/.env | /home/ec2-user/.config/bin/.env | /home/ec2-user/.ssh/bin/aws/scripts/.env | /home/ec2-user/env/aws/.env | /home/ec2-user/envs/aws/.env | /home/ec2-user/miniconda/bin/.env | /home/ec2-user/miniconda/bin/aws/lib/.env | /home/ec2-user/miniconda/envs/aws/.env | /laravel/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php | /lib/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php | /ma | ... [60 exact paths total]
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-15 22:01:53
(1 month ago)
Auto-ban: >3000 req/min op 2026-07-15
Web App Attack
SSH
Hacking