๐บ๐ธ
TPI-Abuse
2026-09-26 14:52:27
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 10:52:20.853689 2026] [security2:error] [pid 18436:tid 18436] [client 141.101.99.7:12876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.livingminimal.com"] [uri "/.env.production"] [unique_id "arfcJOTK8AS8yGaOC0Tp-wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-26 13:22:31
(10 hours ago)
[26/Sep/2026:16:22:30 +0300] -- 141.101.99.7 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env. ...
show more
[26/Sep/2026:16:22:30 +0300] -- 141.101.99.7 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.staging HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Roderic
2026-09-26 12:01:14
(11 hours ago)
(apache-scanners) Failed apache-scanners trigger with match [redacted])
Port Scan
Anonymous
2026-09-24 20:29:41
(2 days ago)
"GET /wp-content/plugins/woocommerce/readme.txt HTTP/1.1"
Hacking
Web App Attack
๐ง๐ช
madeit
2026-09-15 12:42:47
(1 week ago)
Web App Attack
๐บ๐ธ
mawan
2026-08-07 01:41:46
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐จ๐ญ
ALPHANET
2026-07-02 09:37:15
(2 months ago)
web exploits
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 08:27:58
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 04:27:51.174932 2026] [security2:error] [pid 10180:tid 10180] [client 141.101.99.7:12873] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.thebeeplace.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.thebeeplace.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ajT9hyC8xPOLlg9R9fVNowAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-01 17:40:13
(3 months ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/install.php
Web App Attack
๐จ๐ญ
ALPHANET
2026-05-28 14:40:47
(3 months ago)
web exploits
Hacking
Exploited Host
Web App Attack
๐จ๐ญ
ALPHANET
2026-05-02 20:13:21
(4 months ago)
web exploits
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 23:14:17
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 19:14:10.575224 2026] [security2:error] [pid 3297250:tid 3297250] [client 141.101.99.7:10016] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "athletefirst.org"] [uri "/.env.local"] [unique_id "adbhQuor7ez5nd38EKIsVQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 20:11:27
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 16:11:22.927104 2026] [security2:error] [pid 3743655:tid 3743655] [client 141.101.99.7:14133] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "expresstires.us"] [uri "/.env.local"] [unique_id "ada2avh_DDZ9zHEL4r7-CAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 19:28:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 15:28:42.421107 2026] [security2:error] [pid 1493361:tid 1493373] [client 141.101.99.7:10271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ecothermtech.com"] [uri "/.env.test"] [unique_id "adasajfd3Dw-YA0-iw0UmAAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 19:13:28
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.99.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 15:13:21.578105 2026] [security2:error] [pid 2541879:tid 2541879] [client 141.101.99.7:11217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.ezekielproductions.com"] [uri "/.env.save"] [unique_id "adao0cCFNrQn3UgjFNhQkAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack