๐บ๐ธ
TPI-Abuse
2026-10-08 00:14:34
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:14:28.807056 2026] [security2:error] [pid 17324:tid 17324] [client 141.101.98.178:13065] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||intergalactichuman.com|F|2"] [data ".tfstate.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "intergalactichuman.com"] [uri "/.terraform/terraform.tfstate.backup"] [unique_id "asbgZJWnLHru1qa6_V8xogAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-07 22:00:41
(4 hours ago)
Auto-ban: >3000 req/min op 2026-10-07
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 21:44:14
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 17:43:30.313224 2026] [security2:error] [pid 19441:tid 19441] [client 141.101.98.178:12689] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tekrav.com"] [uri "/wp-config.php.bak"] [unique_id "asa9AtBr2McbIHDHbsCwsgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 20:06:46
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 16:06:34.902509 2026] [security2:error] [pid 29400:tid 29400] [client 141.101.98.178:11677] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title23.com"] [uri "/.env.save"] [unique_id "asamSoWrmDrCOC6YyvpCHgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 19:42:48
(7 hours ago)
(mod_security) mod_security (id:210730) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 15:42:43.579571 2026] [security2:error] [pid 2905:tid 2905] [client 141.101.98.178:13374] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||longacre.biz|F|2"] [data ".tfstate.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "longacre.biz"] [uri "/.terraform/terraform.tfstate.backup"] [unique_id "asags6eCpK0lGkbBqAtTfAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-10-07 14:15:02
(12 hours ago)
[07/Oct/2026:17:15:02 +0300] -- 141.101.98.178 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more
[07/Oct/2026:17:15:02 +0300] -- 141.101.98.178 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /credentials.json HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 09:17:29
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 05:17:24.751792 2026] [security2:error] [pid 15887:tid 15887] [client 141.101.98.178:13315] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lidart.org"] [uri "/.svn/entries"] [unique_id "asYOJAgQGUJoRRkObtRxUAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 06:38:44
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 02:38:37.381272 2026] [security2:error] [pid 29743:tid 29743] [client 141.101.98.178:10252] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "evolutionmedical.help"] [uri "/.env.backup"] [unique_id "asXo7QULn2kVOpd8EywBuQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 02:11:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 22:11:01.358245 2026] [security2:error] [pid 28106:tid 28106] [client 141.101.98.178:11182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stukabird.com"] [uri "/.env.local"] [unique_id "asWqNWKVhX7ZL5nq5GixwAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
yitzhaq
2026-10-06 21:06:08
(1 day ago)
141.101.98.178 - - [06/Oct/2026:23:06:05 +0200] "GET /wp-config.php.bak HTTP/2.0" 404 0 "-" "Mozilla ...
show more
141.101.98.178 - - [06/Oct/2026:23:06:05 +0200] "GET /wp-config.php.bak HTTP/2.0" 404 0 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36"
show less
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-06 16:13:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 12:13:27.561504 2026] [security2:error] [pid 13988:tid 13999] [client 141.101.98.178:11629] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cibernetic.com"] [uri "/.git/HEAD"] [unique_id "asUeJ3sh00UkCYIMwJh8nQAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ParaBug
2026-10-06 13:48:42
(1 day ago)
141.101.98.178 - - [06/Oct/2026:15:48:41 +0200] "GET /.terraform/terraform.tfstate HTTP/2.0" 301 472 ...
show more
141.101.98.178 - - [06/Oct/2026:15:48:41 +0200] "GET /.terraform/terraform.tfstate HTTP/2.0" 301 472 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 13:33:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 09:33:35.981431 2026] [security2:error] [pid 5419:tid 5419] [client 141.101.98.178:12456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "askegroup.com"] [uri "/.env.old"] [unique_id "asT4rz_ocRvLm7akGX1G_QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 12:58:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.178 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 08:58:02.899657 2026] [security2:error] [pid 5530:tid 5530] [client 141.101.98.178:14014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holdingfamily.com"] [uri "/.env.save"] [unique_id "asTwWvumXZmTUWvBOlTFsAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-10-06 12:48:55
(1 day ago)
[06/Oct/2026:15:48:54 +0300] -- 141.101.98.178 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.en ...
show more
[06/Oct/2026:15:48:54 +0300] -- 141.101.98.178 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.staging HTTP/1.1
show less
Bad Web Bot
Web App Attack