๐ฎ๐ฉ
penjaga BRIN
2026-10-11 05:44:54
(9 minutes ago)
Suspicious malicious activity
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-10 12:06:04
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 08:05:55.805103 2026] [security2:error] [pid 5608:tid 5608] [client 141.101.99.160:13973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "moontouchmassage.com"] [uri "/.env.save"] [unique_id "asoqIwDm3wWgsFkAAwOgOAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 09:51:19
(20 hours ago)
(mod_security) mod_security (id:210730) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 10 05:51:12.639465 2026] [security2:error] [pid 6115:tid 6115] [client 141.101.99.160:10430] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||roadtosalvation.org|F|2"] [data ".tfstate.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "roadtosalvation.org"] [uri "/.terraform/terraform.tfstate.backup"] [unique_id "asoKkLThmxHQ0Ne0mAenNAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 03:02:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 23:02:07.768005 2026] [security2:error] [pid 23571:tid 23571] [client 141.101.99.160:14022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kccares.help"] [uri "/wp-config.php"] [unique_id "asmqr1j2UJizvdnsOeGy4AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-10 01:23:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 21:23:31.108138 2026] [security2:error] [pid 28100:tid 28100] [client 141.101.99.160:10779] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fluff3.instagenii.com"] [uri "/.env"] [unique_id "asmTk0NLOFhWqHUBzRGlOQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-10-09 23:02:26
(1 day ago)
[10/Oct/2026:02:02:26 +0300] -- 141.101.99.160 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.en ...
show more
[10/Oct/2026:02:02:26 +0300] -- 141.101.99.160 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.staging HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Stara
2026-10-09 00:55:05
(2 days ago)
Automated block - Joomla/WordPress/OpenCart vulnerability scanner exploitation detected (Mala Kinesk ...
show more
Automated block - Joomla/WordPress/OpenCart vulnerability scanner exploitation detected (Mala Kineskinja)
show less
Hacking
Brute-Force
Web App Attack
Anonymous
2026-10-08 22:01:00
(2 days ago)
Network service scanning detected by FortiGate; source quarantined.
Port Scan
๐ณ๐ฑ
homeshowdomain.nl
2026-10-08 21:59:35
(2 days ago)
Auto-ban: >3000 req/min op 2026-10-08
Web App Attack
SSH
Hacking
๐บ๐ธ
craudiovizai
2026-10-08 18:30:50
(2 days ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐ซ๐ท
Bensay
2026-10-08 16:22:55
(2 days ago)
HTTP web-app probe; method=GET; path=/.env.old; status=403; user-agent=Mozilla/5.0 (iPhone; CPU iPho ...
show more
HTTP web-app probe; method=GET; path=/.env.old; status=403; user-agent=Mozilla/5.0 (iPhone; CPU iPhone OS 17_3_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.3 Mobile/15E148 Safari/604.1
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 11:47:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 07:47:43.228771 2026] [security2:error] [pid 10047:tid 10090] [client 141.101.99.160:13421] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nourishmentofthesoul.org"] [uri "/wp-config.php.bak"] [unique_id "aseC39Hm74HLB4JFJ4ULkQAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 09:30:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 05:30:28.013247 2026] [security2:error] [pid 30288:tid 30288] [client 141.101.99.160:12277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chiggerland.com"] [uri "/wp-config.php.bak"] [unique_id "asditLmteV754mMZD77u5AAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 07:02:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 03:02:08.142072 2026] [security2:error] [pid 31411:tid 31411] [client 141.101.99.160:13570] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whodatnation.com"] [uri "/.git/config"] [unique_id "asc_8Mbej3ONbMuRq4SxWQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 06:46:40
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 02:46:33.281481 2026] [security2:error] [pid 13742:tid 13742] [client 141.101.99.160:13748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "swiss-pac.com"] [uri "/.env.backup"] [unique_id "asc8SUSabz41uJhV2YbMyQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack