πΊπΈ
TPI-Abuse
2026-10-08 15:14:15
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 11:14:11.673898 2026] [security2:error] [pid 29918:tid 29918] [client 141.101.98.118:11802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dbt4me.com"] [uri "/.git/HEAD"] [unique_id "asezQ0nmj77b9Pm__nnYYQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 13:16:09
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 09:16:05.656152 2026] [security2:error] [pid 2140:tid 2153] [client 141.101.98.118:11949] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "malia97.com"] [uri "/.svn/entries"] [unique_id "aseXlQX-5RHV2x0uCWXF7AAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-10-08 10:55:18
(7 hours ago)
[08/Oct/2026:13:55:18 +0300] -- 141.101.98.118 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more
[08/Oct/2026:13:55:18 +0300] -- 141.101.98.118 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /config.json HTTP/1.1
show less
Bad Web Bot
Web App Attack
π©πͺ
FeG Deutschland
2026-10-08 08:51:46
(10 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 07:02:28
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 03:02:11.354175 2026] [security2:error] [pid 9944:tid 9944] [client 141.101.98.118:11223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whodatnation.com"] [uri "/wp-config.php.bak"] [unique_id "asc_8xB8NtpXgm0Tuqm8rgAAAHo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 06:38:50
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 02:38:33.896289 2026] [security2:error] [pid 20015:tid 20015] [client 141.101.98.118:13910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "achari.com"] [uri "/wp-config.php.old"] [unique_id "asc6aayB7ojMOz_niXh9IAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 06:10:14
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 02:09:49.088402 2026] [security2:error] [pid 21457:tid 21457] [client 141.101.98.118:10876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "reciprodyne.com"] [uri "/.env.old"] [unique_id "asczrY-XQSE--F87YjolzQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 05:54:22
(12 hours ago)
Sensitive Configuration File Disclosure.
Hacking
πΊπΈ
TPI-Abuse
2026-10-08 05:37:51
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 01:37:42.878592 2026] [security2:error] [pid 13203:tid 13203] [client 141.101.98.118:11239] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelimts.com"] [uri "/.env.old"] [unique_id "ascsJqQ6ut3QhHik5FLlhAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
openstrike.co.uk
2026-10-08 05:15:59
(13 hours ago)
2 attacks on env grabbing URLs, password/key grabbing URLs:
GET /.env.old HTTP/1.1
GET /.ssh/id_ed25 ...
show more
2 attacks on env grabbing URLs, password/key grabbing URLs:
GET /.env.old HTTP/1.1
GET /.ssh/id_ed25519 HTTP/1.1
show less
Hacking
π§π·
dominioz
2026-10-08 04:18:19
(14 hours ago)
2026-10-08 04:17:44 GET /%2eenv - - 141.101.98.118 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64 ...
show more
2026-10-08 04:17:44 GET /%2eenv - - 141.101.98.118 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36+Edg/122.0.0.0 - 301 0
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 03:40:05
(15 hours ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
πΊπΈ
TPI-Abuse
2026-10-08 03:08:21
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 23:08:13.117023 2026] [security2:error] [pid 22025:tid 22025] [client 141.101.98.118:9823] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fluff3.instagenii.com"] [uri "/.env.production"] [unique_id "ascJHUBWGkSgyrrUqbeFRgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 02:39:48
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.118 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 22:39:41.955831 2026] [security2:error] [pid 24647:tid 24647] [client 141.101.98.118:13557] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "neilvboyer.com"] [uri "/.svn/entries"] [unique_id "ascCbfpKn13Ud-uQJij92QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
BlueWire Hosting
2026-10-08 02:10:35
(16 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack