๐บ๐ธ
TPI-Abuse
2026-10-08 08:10:22
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 04:09:53.731864 2026] [security2:error] [pid 2219:tid 2219] [client 141.101.98.244:11263] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brittaniaenterprises.com"] [uri "/.svn/entries"] [unique_id "asdP0eqkxv0-qy-6JKrtJwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-08 07:57:36
(5 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 07:50:56
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 03:50:50.857025 2026] [security2:error] [pid 31152:tid 31152] [client 141.101.98.244:12305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.belgiophar.com"] [uri "/wp-config.php.save"] [unique_id "asdLWg2hemFymocNyL68awAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-10-08 07:16:55
(6 hours ago)
[08/Oct/2026:10:16:55 +0300] -- 141.101.98.244 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.en ...
show more
[08/Oct/2026:10:16:55 +0300] -- 141.101.98.244 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.backup HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-10-08 05:16:18
(8 hours ago)
2 attacks on env grabbing URLs, password/key grabbing URLs:
GET /.env.backup HTTP/1.1
GET /.git-cred ...
show more
2 attacks on env grabbing URLs, password/key grabbing URLs:
GET /.env.backup HTTP/1.1
GET /.git-credentials HTTP/1.1
show less
Hacking
๐ฉ๐ช
raph
2026-10-08 03:58:08
(9 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 02:22:06
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 22:22:01.467405 2026] [security2:error] [pid 4968:tid 4968] [client 141.101.98.244:10162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "neilvboyer.com"] [uri "/wp-config.php.bak"] [unique_id "asb-SYoNYgjdTsbAHduK9wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 00:53:25
(12 hours ago)
WordPress Sensitive System Files Information Disclosure; Sensitive Configuration File Disclosure.
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 23:06:24
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 19:06:14.016588 2026] [security2:error] [pid 15894:tid 15894] [client 141.101.98.244:11094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "1st-advantage-arkansas-real-estate-school.com"] [uri "/.env.local"] [unique_id "asbQZkR1_KHRNRzfk9_ytQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-07 22:02:00
(15 hours ago)
Auto-ban: >3000 req/min op 2026-10-07
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 21:57:28
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 17:57:18.465048 2026] [security2:error] [pid 15420:tid 15420] [client 141.101.98.244:9790] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "celebrateadoption.com"] [uri "/.env.save"] [unique_id "asbAPvyrhmK5AmH1DCwv3wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 21:05:41
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 17:05:33.878870 2026] [security2:error] [pid 2959:tid 2959] [client 141.101.98.244:12521] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kewlkarz.com"] [uri "/wp-config.php.bak"] [unique_id "asa0HW3g_R7GyTPrf7um9AAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
bohl-aiG5aef
2026-10-07 20:51:28
(16 hours ago)
Suricata Alert [SID:2019526] ET WEB_SERVER WEB-PHP phpinfo access
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 20:39:41
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.244 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 16:39:31.462493 2026] [security2:error] [pid 5739:tid 5739] [client 141.101.98.244:11175] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mskimberleesspace.com"] [uri "/.env.production"] [unique_id "asauA5oqCaAmgRs3LHDa0AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
DRI
2026-10-07 17:27:50
(20 hours ago)
Web attack/Malicious activity detected
Web App Attack