๐บ๐ธ
TPI-Abuse
2026-09-26 12:46:00
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 08:45:55.732537 2026] [security2:error] [pid 10846:tid 10846] [client 141.101.98.28:12669] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "geckoturner.com"] [uri "/.git/config"] [unique_id "are-g7gYTvcTn35mPv0IqgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
entangled_mongoose
2026-09-26 10:50:11
(10 hours ago)
Probed /wp-config.php.
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-26 10:45:44
(10 hours ago)
[26/Sep/2026:13:45:44 +0300] -- 141.101.98.28 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[26/Sep/2026:13:45:44 +0300] -- 141.101.98.28 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TIScore
2026-09-24 23:50:59
(1 day ago)
Automated web attack / probing. Signals: Admin-panel scan; Foreign script extension; Unexpected path ...
show more
Automated web attack / probing. Signals: Admin-panel scan; Foreign script extension; Unexpected path. Last path: /wp-admin/install.php
show less
Web App Attack
Anonymous
2026-09-21 06:20:01
(5 days ago)
"Packet Flood; Triggered WAF; Persistent 404 Attempts"
DDoS Attack
๐ท๐บ
DZBOT
2026-09-08 00:21:47
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ท๐บ
DZBOT
2026-09-05 14:03:34
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-07-21 19:50:19
(2 months ago)
Web App Attack
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-04-10 03:43:37
(5 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-09 00:19:24
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 20:19:20.022670 2026] [security2:error] [pid 2838390:tid 2838390] [client 141.101.98.28:10336] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "drillworkscr.com.thehealthcontent.com"] [uri "/.env.development"] [unique_id "adbwiEfVNtemwXP2d7oH5QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 23:02:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 19:02:41.188944 2026] [security2:error] [pid 2807940:tid 2807940] [client 141.101.98.28:10900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yournewphotos.tijuanabible.org"] [uri "/.env.docker"] [unique_id "adbekajtWA0DRKmiZSNpJAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 22:19:03
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 18:18:47.381125 2026] [security2:error] [pid 2589854:tid 2589854] [client 141.101.98.28:10905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webtestbed.com.convoyforkids.com"] [uri "/.env.tmp"] [unique_id "adbUR3uzy2KRG4qa7GXNjQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 18:14:39
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 14:14:33.615089 2026] [security2:error] [pid 2596190:tid 2596190] [client 141.101.98.28:10976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.artandthebible.com"] [uri "/.env.container"] [unique_id "adabCX6v4v2Qh4j7TSJ0fwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 16:34:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 12:34:11.394308 2026] [security2:error] [pid 4023481:tid 4023481] [client 141.101.98.28:12456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.deversonandtanack.com"] [uri "/.env~"] [unique_id "adaDgwuypril8TY-vXg3pgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 15:25:27
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 11:25:21.835182 2026] [security2:error] [pid 2100928:tid 2100928] [client 141.101.98.28:9865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stellwagenmusic.com.jimgrenier.com"] [uri "/.git/logs/HEAD"] [unique_id "adZzYYj9AQYav4VajvxWTQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack