๐บ๐ฆ
URAN Publishing Service
2026-09-30 01:02:21
(53 minutes ago)
[30/Sep/2026:04:02:20 +0300] -- 141.101.98.56 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET / ...
show more
[30/Sep/2026:04:02:20 +0300] -- 141.101.98.56 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /.env HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-09-30 00:16:07
(1 hour ago)
Accessed trap at '/.git/config'
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-29 21:07:44
(4 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 19:54:57
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:54:50.760880 2026] [security2:error] [pid 26237:tid 26237] [client 141.101.98.56:13910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "strawusa.com"] [uri "/.env.production"] [unique_id "arwXilJqNNZAMk28OagR9AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-09-29 08:13:56
(17 hours ago)
Accessed trap at '/.env'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 04:51:00
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 00:50:46.041658 2026] [security2:error] [pid 12837:tid 12837] [client 141.101.98.56:13951] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "franzexpress.com"] [uri "/.env"] [unique_id "artDpsi6gcAw0kzIDegwcAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 01:25:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 21:25:43.788770 2026] [security2:error] [pid 4611:tid 4646] [client 141.101.98.56:12839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emehache.com"] [uri "/.env"] [unique_id "arsTl9-xYQtcVfb7C8H2jAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-29 00:08:38
(1 day ago)
[29/Sep/2026:03:08:38 +0300] -- 141.101.98.56 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-c ...
show more
[29/Sep/2026:03:08:38 +0300] -- 141.101.98.56 Ban reason: Scanner [CMS_GENERIC] | Request: GET /wp-content/plugins/woocommerce/readme.txt HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 22:13:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 18:13:35.637914 2026] [security2:error] [pid 27887:tid 27887] [client 141.101.98.56:11491] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "parasolia.angelabcomics.com"] [uri "/.env.staging"] [unique_id "arrmj7V_EZz1tABIPjfuSQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-09-28 18:39:00
(1 day ago)
HTTP vulnerability scanning
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 16:48:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 12:47:59.410343 2026] [security2:error] [pid 3075:tid 3075] [client 141.101.98.56:11150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ncogtrains.com"] [uri "/.env.staging"] [unique_id "arqaP3a8O8hf8Ccu2qMylgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 10:40:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 06:40:20.111550 2026] [security2:error] [pid 5579:tid 5579] [client 141.101.98.56:11828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wedeliverstrippers.com"] [uri "/.env.production"] [unique_id "arpEFOknRukWCEd00mEgnwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-28 09:33:24
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 13:40:33
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.98.56 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 09:40:24.504086 2026] [security2:error] [pid 27231:tid 27231] [client 141.101.98.56:13564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thebeeplace.com"] [uri "/.env.production"] [unique_id "arfLSB9eZwsQEEKNV4C_DwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-09-26 12:17:35
(3 days ago)
(security_scan) Sensitive File Scan Blocked 141.101.98.56 (GB/United Kingdom/-): 1 in the last 4600 ...
show more
(security_scan) Sensitive File Scan Blocked 141.101.98.56 (GB/United Kingdom/-): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 141.101.98.56 - - [26/Sep/2026:15:17:31 +0300] "GET /config.php HTTP/2.0" 200 17 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36 Edg/122.0.0.0"
show less
Port Scan