πΊπΈ
TPI-Abuse
2026-10-08 09:36:34
(1 minute ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 05:36:23.095833 2026] [security2:error] [pid 28021:tid 28021] [client 141.101.98.121:10363] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vrmapping.net"] [uri "/.env.bak"] [unique_id "asdkF4Pm1n46cIVaSCvHUQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 03:35:18
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 23:35:00.589663 2026] [security2:error] [pid 16247:tid 16247] [client 141.101.98.121:12471] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "damonmarks.com"] [uri "/.env.save"] [unique_id "ascPZE1VyUC60BDNOQB8SwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 00:42:49
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:42:43.711738 2026] [security2:error] [pid 22511:tid 22511] [client 141.101.98.121:9890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "portraitgalleria.com"] [uri "/.svn/entries"] [unique_id "asbnA_UdyXzCO-Saz64U0AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 23:35:29
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 19:35:20.185821 2026] [security2:error] [pid 17976:tid 17976] [client 141.101.98.121:12559] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cruisingforsex.com"] [uri "/.git/config"] [unique_id "asbXOMSawW3pJivEraxzcgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 21:52:54
(11 hours ago)
(mod_security) mod_security (id:210730) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 17:52:48.567458 2026] [security2:error] [pid 29934:tid 29934] [client 141.101.98.121:13715] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||hiddentcgcards.com|F|2"] [data ".tfstate.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "hiddentcgcards.com"] [uri "/.terraform/terraform.tfstate.backup"] [unique_id "asa_MJ5IXFEPjbhCGdzaFwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-10-07 18:14:08
(15 hours ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 11:35:14
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 07:35:07.441865 2026] [security2:error] [pid 26488:tid 26488] [client 141.101.98.121:12880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bodeur.net"] [uri "/.env"] [unique_id "asYua69-e9dKom-c8JcfHgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 02:24:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 22:24:14.524191 2026] [security2:error] [pid 3006407:tid 3006418] [client 141.101.98.121:12957] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aussiepens.com"] [uri "/wp-config.php"] [unique_id "asWtThnD4EZlR_axro9YqQAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-10-07 02:21:08
(1 day ago)
[07/Oct/2026:05:21:08 +0300] -- 141.101.98.121 Ban reason: Scanner [CMS_GENERIC] | Request: GET /con ...
show more
[07/Oct/2026:05:21:08 +0300] -- 141.101.98.121 Ban reason: Scanner [CMS_GENERIC] | Request: GET /config.php HTTP/1.1
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 23:34:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 19:34:21.457322 2026] [security2:error] [pid 28798:tid 28798] [client 141.101.98.121:12435] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fancycleaners.com"] [uri "/.env.backup"] [unique_id "asWFfUL5xBV-cwVSkD0fSAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-06 22:24:04
(1 day ago)
Sensitive Configuration File Disclosure.
Hacking
πΊπΈ
TPI-Abuse
2026-10-06 16:39:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 12:38:46.308822 2026] [security2:error] [pid 18108:tid 18120] [client 141.101.98.121:10249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "east-lease.com"] [uri "/wp-config.php.old"] [unique_id "asUkFiESng3CJzfgmVt0VgAAAEQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 16:17:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 12:17:02.787070 2026] [security2:error] [pid 30343:tid 30343] [client 141.101.98.121:10827] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "erinrusso.com"] [uri "/.svn/entries"] [unique_id "asUe_kzMeQBsPL-wyb-9JAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 15:28:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 11:27:59.042319 2026] [security2:error] [pid 6693:tid 6693] [client 141.101.98.121:10182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smart1services.com"] [uri "/wp-config.php.save"] [unique_id "asUTf2xAsYwfhtNqvsSrDwAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 14:28:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 10:28:22.901445 2026] [security2:error] [pid 2065:tid 2065] [client 141.101.98.121:11155] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bikiniwatersports.com"] [uri "/wp-config.php.save"] [unique_id "asUFho680gRpQXsr2T329wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack