๐บ๐ธ
TPI-Abuse
2026-10-08 18:37:36
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 14:37:27.850948 2026] [security2:error] [pid 6800:tid 6800] [client 141.101.98.111:10024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theseoscribe.com"] [uri "/.env.bak"] [unique_id "asfi56733mFdz94eAHP6wQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 18:07:19
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 14:07:10.702942 2026] [security2:error] [pid 23109:tid 23109] [client 141.101.98.111:9274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "slimlaw.com"] [uri "/.env"] [unique_id "asfbzpSFvIDW6rfMCRMWtwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
louis77
2026-10-08 13:22:25
(6 hours ago)
Sensitive file access attempt - Path: /.ssh/id_ed25519, Method: GET, UA: Mozilla/5.0 (Macintosh; Int ...
show more
Sensitive file access attempt - Path: /.ssh/id_ed25519, Method: GET, UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-08 12:34:00
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 08:33:53.949734 2026] [security2:error] [pid 3906:tid 3932] [client 141.101.98.111:10761] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bullfrogspond.com"] [uri "/wp-config.php.save"] [unique_id "aseNsTPM6b7xceXMjQXClQAAARA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 08:10:29
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 04:09:55.835474 2026] [security2:error] [pid 27301:tid 27301] [client 141.101.98.111:12495] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brittaniaenterprises.com"] [uri "/wp-config.php.save"] [unique_id "asdP08NQ21v8OlsY7oulLAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 06:24:14
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 02:24:04.720309 2026] [security2:error] [pid 25010:tid 25010] [client 141.101.98.111:13943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jerryhetrick.com"] [uri "/.htaccess"] [unique_id "asc3BLHFNUWVZh3uj2ug7AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 00:53:24
(19 hours ago)
WordPress Sensitive System Files Information Disclosure.
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-08 00:51:05
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:51:00.793041 2026] [security2:error] [pid 30648:tid 30648] [client 141.101.98.111:13777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "civilwarscout.com"] [uri "/wp-config.php.old"] [unique_id "asbo9NJdhKFAazwyLraeewAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
altenglaner
2026-10-08 00:44:10
(19 hours ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-07 22:01:09
(22 hours ago)
Auto-ban: >3000 req/min op 2026-10-07
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 19:29:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 15:29:42.410246 2026] [security2:error] [pid 11307:tid 11307] [client 141.101.98.111:12525] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jockoenterprises.com"] [uri "/.env"] [unique_id "asadpmkvn55Ohkc88MvnqQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 04:44:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 00:44:13.034105 2026] [security2:error] [pid 10326:tid 10326] [client 141.101.98.111:11000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blacksheepoffroad.com"] [uri "/.git/HEAD"] [unique_id "asXOHQ9GsYqJWPzGJk663QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-10-07 02:21:02
(1 day ago)
[07/Oct/2026:05:21:01 +0300] -- 141.101.98.111 Ban reason: Scanner [CMS_GENERIC] | Request: GET /con ...
show more
[07/Oct/2026:05:21:01 +0300] -- 141.101.98.111 Ban reason: Scanner [CMS_GENERIC] | Request: GET /config.php HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 02:02:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 22:02:41.385266 2026] [security2:error] [pid 3006440:tid 3006448] [client 141.101.98.111:12316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aussiepens.com"] [uri "/.env.local"] [unique_id "asWoQdJ7xxyqxnGaVsg0vgAAAQY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 21:49:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 17:49:28.051766 2026] [security2:error] [pid 16989:tid 16989] [client 141.101.98.111:11098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "humbliaslaw.com"] [uri "/.env.backup"] [unique_id "asVs6LI9UhJDsNobNSMLqgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack