πΊπΈ
TPI-Abuse
2026-10-08 16:59:03
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 12:58:53.016066 2026] [security2:error] [pid 21442:tid 21442] [client 141.101.98.193:12099] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "enlightened-workplace.com"] [uri "/.env.dev"] [unique_id "asfLzYjg0cXlYBB4EAQtXAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 07:50:43
(17 hours ago)
(mod_security) mod_security (id:210730) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 03:50:37.795628 2026] [security2:error] [pid 3997:tid 3997] [client 141.101.98.193:14166] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||cozydesignae.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cozydesignae.com"] [uri "/index.php.bak"] [unique_id "asdLTVM1JBvcRcc0p16g1QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 06:15:40
(18 hours ago)
Sensitive Configuration File Disclosure.
Hacking
πΊπΈ
TPI-Abuse
2026-10-08 05:37:46
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 01:37:42.112121 2026] [security2:error] [pid 7421:tid 7421] [client 141.101.98.193:14112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelimts.com"] [uri "/.env.save"] [unique_id "ascsJh5njiy0MOrtQB9ZcQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§π·
dominioz
2026-10-08 04:17:42
(20 hours ago)
2026-10-08 04:17:39 GET /%2eenv - - 141.101.98.193 HTTP/2 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+ ...
show more
2026-10-08 04:17:39 GET /%2eenv - - 141.101.98.193 HTTP/2 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/122.0.0.0+Safari/537.36 - 301 0
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 03:54:54
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 23:54:50.904912 2026] [security2:error] [pid 7477:tid 7477] [client 141.101.98.193:13093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "captechtraining.com"] [uri "/.env.local"] [unique_id "ascUCm7JztlYczb4L9_rDAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 02:22:01
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 22:21:53.243322 2026] [security2:error] [pid 4140:tid 4140] [client 141.101.98.193:13481] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "neilvboyer.com"] [uri "/.env.production"] [unique_id "asb-QVi6EWy5VTjH1nlx8gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 01:20:30
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 21:19:30.185614 2026] [security2:error] [pid 18438:tid 18438] [client 141.101.98.193:11817] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocketcityhotwheelers.com"] [uri "/.env.dev"] [unique_id "asbvojSeOWiuW_dawMcQbQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 00:05:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:04:42.705576 2026] [security2:error] [pid 23527:tid 23560] [client 141.101.98.193:10210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pattinauction.com"] [uri "/.env"] [unique_id "asbeGrx94Ypj1U8E1kEl6gAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 22:17:08
(1 day ago)
(mod_security) mod_security (id:210730) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 18:16:53.641966 2026] [security2:error] [pid 27249:tid 27249] [client 141.101.98.193:13006] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||grupo-visalud.com|F|2"] [data ".tfstate.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "grupo-visalud.com"] [uri "/.terraform/terraform.tfstate.backup"] [unique_id "asbE1Sk2vh62dizJkQhxSAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 19:40:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 15:40:12.904706 2026] [security2:error] [pid 24278:tid 24278] [client 141.101.98.193:12585] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zezel.com"] [uri "/.env.staging"] [unique_id "asagHLyiTdI0qzGXejwZSQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-10-07 15:43:01
(1 day ago)
[07/Oct/2026:18:43:00 +0300] -- 141.101.98.193 Ban reason: Scanner [CMS_GENERIC] | Request: GET /con ...
show more
[07/Oct/2026:18:43:00 +0300] -- 141.101.98.193 Ban reason: Scanner [CMS_GENERIC] | Request: GET /config.php HTTP/1.1
show less
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-10-07 09:12:29
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 06:51:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 02:51:39.093134 2026] [security2:error] [pid 7278:tid 7278] [client 141.101.98.193:14137] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greed.ee"] [uri "/.git/config"] [unique_id "asXr-wm17COq-w_ilK8kQwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 05:18:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.193 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 01:18:30.702938 2026] [security2:error] [pid 29745:tid 29745] [client 141.101.98.193:11074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeffautry.com"] [uri "/.env.local"] [unique_id "asXWJiZN0pALa1KH52On_gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack