๐ซ๐ท
Lino Project
2026-09-25 11:53:27
(11 hours ago)
34.158.200.74 - - [25/Sep/2026:13:53:24 +0200] "GET /.git/config HTTP/1.1" 404 458 "-" "Mozilla/5.0 ...
show more
34.158.200.74 - - [25/Sep/2026:13:53:24 +0200] "GET /.git/config HTTP/1.1" 404 458 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.158.200.74 - - [25/Sep/2026:13:53:25 +0200] "GET /.env HTTP/1.1" 404 458 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-24 09:45:55
(1 day ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-24 06:08:06
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฉ๐ช
akasolutions.de
2026-09-24 05:54:07
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.158.200.74 (KR/South Korea/74.200.15 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.158.200.74 (KR/South Korea/74.200.158.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฆ๐บ
2000cn.com.au
2026-09-24 03:37:58
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ณ๐ฑ
e.fierstra
2026-09-23 16:57:28
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ท๐ด
clauss
2026-09-23 15:30:50
(2 days ago)
34.158.200.74 - - [23/Sep/2026:18:30:49 +0300] "GET /phpinfo.php HTTP/2.0" 500 2649 "-" "Mozilla/5.0 ...
show more
34.158.200.74 - - [23/Sep/2026:18:30:49 +0300] "GET /phpinfo.php HTTP/2.0" 500 2649 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.158.200.74 - - [23/Sep/2026:18:30:49 +0300] "GET /info.php HTTP/2.0" 500 2649 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-23 11:42:21
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐ณ๐ฑ
Alt255
2026-09-22 14:08:10
(3 days ago)
[ti-hosboov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: ...
show more
[ti-hosboov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.158.200.74 - - \[22/Sep/2026:16:08:01 +0200\] "GET /.git/config HTTP/1.1" 301 646 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-22 13:20:02
(3 days ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 00:58:43
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.200.74 (74.200.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.200.74 (74.200.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:58:40.447106 2026] [security2:error] [pid 15235:tid 15235] [client 34.158.200.74:59826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hypsnet.hyps.com"] [uri "/.git/config"] [unique_id "arHSwMNT7ROm5umHGdHNdQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-22 00:34:41
(3 days ago)
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.158.200.74 - - [22/Sep/2026:02:34:37 +0200] "GET /.git/config HTTP/1.1" 301 522 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 15:06:25
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.200.74 (74.200.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.200.74 (74.200.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:06:17.866349 2026] [security2:error] [pid 21449:tid 21449] [client 34.158.200.74:35158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.homevalue.iainrealtor.com"] [uri "/.git/config"] [unique_id "arFH6RnYl1oNFU3Qr4Lc1QAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 10:56:44
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.200.74 (74.200.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.200.74 (74.200.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 06:56:39.574806 2026] [security2:error] [pid 7904:tid 7904] [client 34.158.200.74:47074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.madandproud.com.78cardsofthetarot-tarotmancy-tarot-cards-and-tarot-readings.com"] [uri "/.git/config"] [unique_id "arENZ71TZiSBTncdPX5QiQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Celtic
2026-09-21 07:35:33
(4 days ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH