๐ซ๐ท
Phenix Info
2026-08-16 19:02:43
(12 hours ago)
SmallGuard.fr/Prestashop Massive 403
Web App Attack
๐ซ๐ท
Dorian GRANDHAY
2026-08-15 02:51:17
(2 days ago)
(PERMBLOCK) 74.7.243.197 (US/United States/-) has had more than 4 temp blocks in the last 604800 sec ...
show more
(PERMBLOCK) 74.7.243.197 (US/United States/-) has had more than 4 temp blocks in the last 604800 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ซ๐ท
masterguru
2026-08-15 02:33:18
(2 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.243.197 (US/United States/-): 1 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.243.197 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
Anonymous
2026-08-15 02:25:01
(2 days ago)
Malicious activity detected
Hacking
Web App Attack
๐ฉ๐ช
DocNetzwerk
2026-08-14 20:00:27
(2 days ago)
(php-url-fopen) Failed php-url-fopen trigger from 74.7.243.197 (US/United States/-)
Web App Attack
๐ฉ๐ช
jbcrn
2026-08-12 11:52:06
(4 days ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Request ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Requested honeypot path: /. User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 09:52:44
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 74.7.243.197 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 74.7.243.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 05:52:39.053289 2026] [security2:error] [pid 812718:tid 812718] [client 74.7.243.197:41068] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||insidemilb.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "insidemilb.com"] [uri "/wp-json/wp/v2/users/1"] [unique_id "anxCZ5-m5IrAbs-lmBXbTAAAACc"], referer: https://insidemilb.com/author/milbinsider/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
librebit
2026-08-12 04:25:10
(5 days ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-12 02:41:57
(5 days ago)
(mod_security) mod_security (id:210381) triggered by 74.7.243.197 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210381) triggered by 74.7.243.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 22:41:50.432443 2026] [security2:error] [pid 2503331:tid 2503331] [client 74.7.243.197:35498] ModSecurity: Access denied with code 403 (phase 2). Invalid URL Encoding: Non-hexadecimal digits used at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "82"] [id "210381"] [rev "6"] [msg "COMODO WAF: URL Encoding Abuse Attack Attempt||www.cultiplant.com.menagri.com|F|4"] [data "REQUEST_URI=/uploads/products/CULTIPLANT_Zinc_Nitrate_42%_Liquid_TDS.pdf"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.cultiplant.com.menagri.com"] [uri "/uploads/products/CULTIPLANT_Zinc_Nitrate_42%_Liquid_TDS.pdf"] [unique_id "anvdbpvc7REyC0hqwgtmIQAAAA8"], referer: https://www.cultiplant.com.menagri.com/uploads/products/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-08-11 16:19:32
(5 days ago)
(LF_APACHE_404) srv104 Multiple 404 Scan 74.7.243.197 (US/United States/-): 200 in the last 3600 sec ...
show more
(LF_APACHE_404) srv104 Multiple 404 Scan 74.7.243.197 (US/United States/-): 200 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Anonymous
2026-08-09 13:38:01
(1 week ago)
Malicious activity detected
Hacking
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-08-05 02:15:21
(1 week ago)
Plesk Fail2Ban jail: plesk-apache-badbot. Evidence: 74.7.243.197 - - [05/Aug/2026:05:15:21 +0300] "G ...
show more
Plesk Fail2Ban jail: plesk-apache-badbot. Evidence: 74.7.243.197 - - [05/Aug/2026:05:15:21 +0300] "GET / HTTP/2.0" 404 1643 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)"
show less
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-08-05 00:27:41
(1 week ago)
(mod_security) mod_security (id:990005) triggered by 74.7.243.197 (US/United States/Georgia/Atlanta/ ...
show more
(mod_security) mod_security (id:990005) triggered by 74.7.243.197 (US/United States/Georgia/Atlanta/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Wed Aug 05 03:27:40.015018 2026] [security2:error] [pid 219381:tid 219388] [remote 74.7.243.197:53056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "gptbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "159"] [id "990005"] [msg "Blocked AI Scraper from Google Cloud Platform"] [hostname "grafeioteletonkaragiannis.gr"] [uri "/"] [unique_id "anKDe5hOBhSGAYpNXSVfcwAAEwY"]
show less
Port Scan
๐ฌ๐ท
setupgr
2026-08-04 14:46:20
(1 week ago)
(mod_security) mod_security (id:990005) triggered by 74.7.243.197 (US/United States/Georgia/Atlanta/ ...
show more
(mod_security) mod_security (id:990005) triggered by 74.7.243.197 (US/United States/Georgia/Atlanta/-/[AS8075 MICROSOFT-CORP-MSN-AS-BLOCK]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Tue Aug 04 17:46:18.942668 2026] [security2:error] [pid 3067:tid 271864] [remote 74.7.243.197:46980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "gptbot" at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "159"] [id "990005"] [msg "Blocked AI Scraper from Google Cloud Platform"] [hostname "grafeioteletonkaragiannis.gr"] [uri "/sitemap.xml"] [unique_id "anH7OvEH6vWaEMshMZNdxwADxRw"]
show less
Port Scan
๐ซ๐ท
Thaliruth
2026-08-04 07:15:35
(1 week ago)
[Tue Aug 04 09:15:34.860402 2026] [authz_core:error] [pid 3700458:tid 133536346523328] [client 74.7. ...
show more
[Tue Aug 04 09:15:34.860402 2026] [authz_core:error] [pid 3700458:tid 133536346523328] [client 74.7.243.197:0] AH01630: client denied by server configuration: /var/www/vhosts/thaliruth.de/li.thaliruth.de/
...
show less
Brute-Force