Anonymous
2026-09-16 04:32:20
(7 hours ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฌ๐ง
noise.agency
2026-09-16 04:05:43
(8 hours ago)
34.63.198.74 (US/United States/74.198.63.34.bc.googleusercontent.com), more than 10 Apache 403 hits
Hacking
Anonymous
2026-09-16 03:44:48
(8 hours ago)
Aggressive web scan
Web App Attack
๐ฏ๐ต
VXG-NET
2026-09-16 00:02:20
(12 hours ago)
port=80, indicator_type=info-leak
Hacking
๐ฎ๐ณ
evicky2002
2026-09-16 00:02:04
(12 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฉ๐ช
rh24
2026-09-15 23:59:02
(12 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.63.198.74 (US/Uni ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.63.198.74 (US/United States/74.198.63.34.bc.googleusercontent.com)
show less
Bad Web Bot
๐ฒ๐พ
Rizzy
2026-09-15 23:47:09
(12 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ง๐ท
Halux
2026-09-15 23:21:46
(12 hours ago)
34.63.198.74 Probing protected path or service
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 23:02:06
(13 hours ago)
[redacted] 34.63.198.74 - - [15/Sep/2026:23:32:27 +0100] "GET / HTTP/1.1" 200 8004 0/136578 "https:/ ...
show more
[redacted] 34.63.198.74 - - [15/Sep/2026:23:32:27 +0100] "GET / HTTP/1.1" 200 8004 0/136578 "https://[redacted]/@fs/app/.[redacted]?import&raw??" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.3; +https://[redacted]/gptbot)" 443 [redacted] 34.63.198.74 - - [15/Sep/2026:23:32:27 +0100] "GET / HTTP/1.1" 200 8003 0/137784 "https://[redacted]/@fs/app/.[redacted]?import&raw??" "Mozilla/5.0 (compatible; YiBot/1.0; +https://[redacted]/)" 443
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2026-09-15 22:56:39
(13 hours ago)
Excessive crawling HTTP 404
Web App Attack
๐ซ๐ท
Baking333
2026-09-15 22:32:27
(13 hours ago)
[redacted] 34.63.198.74 - - [15/Sep/2026:23:32:25 +0100] "GET /api/uploads/%2e%2e%2f%2e%2e%[redacted ...
show more
[redacted] 34.63.198.74 - - [15/Sep/2026:23:32:25 +0100] "GET /api/uploads/%2e%2e%2f%2e%2e%[redacted] HTTP/1.1" 404 5741 0/111 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; +claudebot@[redacted])" 443 [redacted] 34.63.198.74 - - [15/Sep/2026:23:32:25 +0100] "GET /dist/.vite/[redacted] HTTP/1.1" 302 6803 0/100056 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36" 443
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 22:13:07
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.63.198.74 (74.198.63.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.198.74 (74.198.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 18:12:59.595123 2026] [security2:error] [pid 24714:tid 24714] [client 34.63.198.74:49632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lasvegaskiss.com"] [uri "/%2E%2E/%2E%2E/%2E%2E/%2E%2E/.env"] [unique_id "aqnC66a1mBGbPLNW-ZJ5_gAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 21:47:57
(14 hours ago)
[cb-01al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-01al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.63.198.74 - - [15/Sep/2026:23:47:56 +0200] "GET /.env?raw HTTP/2.0" 404 1338 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-09-15 21:10:09
(15 hours ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.63.198.74 (US/United States/74.198.63 ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 34.63.198.74 (US/United States/74.198.63.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 34.63.198.74 - - [15/Sep/2026:23:10:07 +0200] "GET /.ssh/id_dsa HTTP/2.0" 403 146 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)" "34.63.198.74" host=lasfiziosapizzeria.it
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-15 20:13:55
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.63.198.74 (74.198.63.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.63.198.74 (74.198.63.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:13:48.545070 2026] [security2:error] [pid 22956:tid 22956] [client 34.63.198.74:55338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "larsholm.com"] [uri "/.git/config"] [unique_id "aqmm_HOkToSYwripDc8XFAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack