πΊπΈ
TPI-Abuse
2026-06-25 18:01:09
(2 hours ago)
(mod_security) mod_security (id:210730) triggered by 74.7.243.214 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 74.7.243.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 14:01:03.628851 2026] [security2:error] [pid 20064:tid 20064] [client 74.7.243.214:58952] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.lertap5.com|F|2"] [data ".sas.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.lertap5.com"] [uri "/HTMLHelp/Lrtp59HTML/www.sas.com"] [unique_id "aj1s3yVFUXVgkfuomwVcxgAAAAU"], referer: https://www.lertap5.com/HTMLHelp/Lrtp59HTML/downloadceq.htm
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Sklurk
2026-06-25 13:29:42
(7 hours ago)
Web App Attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-25 08:40:19
(12 hours ago)
(mod_security) mod_security (id:225170) triggered by 74.7.243.214 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:225170) triggered by 74.7.243.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 04:40:12.773583 2026] [security2:error] [pid 19859:tid 19859] [client 74.7.243.214:56774] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||carrier.cloudex.link|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "carrier.cloudex.link"] [uri "/wp-json/wp/v2/users/1"] [unique_id "ajzpbDvuAw2ym6E3oPxZrwAAAAQ"], referer: https://carrier.cloudex.link/author/admin/
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2026-06-25 05:20:07
(15 hours ago)
12.796 requests in 1 hour (2mos2w6d)
Brute-Force
Bad Web Bot
Anonymous
2026-06-24 09:52:38
(1 day ago)
Reported from Nginx log analysis 11. Log: 74.7.243.214 - - [24/Jun/2026:xx:xx:xx 0200] "GET / HTTP/ ...
show more
Reported from Nginx log analysis 11. Log: 74.7.243.214 - - [24/Jun/2026:xx:xx:xx 0200] "GET / HTTP/2.0" xxx xxx "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; https://openai.com/gptbot)" "-" "US United States Atlanta" "AS8075" "Microsoft Corporation"
show less
Port Scan
Brute-Force
SSH
π©πͺ
ITSNF
2026-06-23 13:50:02
(2 days ago)
Blocked by OPNsense firewall; 4 hits, proto=tcp, ports=443
Port Scan
Hacking
Anonymous
2026-06-22 09:52:36
(3 days ago)
Reported from Nginx log analysis 11. Log: 74.7.243.214 - - [22/Jun/2026:xx:xx:xx 0200] "GET / HTTP/ ...
show more
Reported from Nginx log analysis 11. Log: 74.7.243.214 - - [22/Jun/2026:xx:xx:xx 0200] "GET / HTTP/2.0" xxx xxx "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; https://openai.com/gptbot)" "-" "US United States Atlanta" "AS8075" "Microsoft Corporation"
show less
Port Scan
Brute-Force
SSH
π³π±
Site.eu
2026-06-21 18:54:44
(4 days ago)
Excessive multi-domain requests
Brute-Force
πΊπΈ
mnsf
2026-06-20 16:05:48
(5 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
πΊπΈ
horsemedia
2026-06-20 10:53:47
(5 days ago)
probing for exploits /fr/auctions/details/summer-edition-foals-auction-2025-11
Web App Attack
π³π±
Site.eu
2026-06-19 22:35:02
(5 days ago)
Excessive multi-domain requests
Brute-Force
πͺπΈ
masterguru
2026-06-19 10:28:16
(6 days ago)
BAD BOT - Detected and Blocked.. Matched phrase "GPTBot" at REQUEST_HEADERS:user-agent. (1100000-122 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "GPTBot" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
π©πͺ
maxpower
2026-06-19 06:34:44
(6 days ago)
(junkbot) REGOLA 8 - Junk Bot Blocked 74.7.243.214 (US/United States/-): 1 in the last 3600 secs; Po ...
show more
(junkbot) REGOLA 8 - Junk Bot Blocked 74.7.243.214 (US/United States/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 74.7.243.214 - - [19/Jun/2026:08:34:41 +0200] "GET / HTTP/2.0" 200 22285 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot)" "-" host=transpogood.egroupadv.it
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-06-19 06:30:45
(6 days ago)
(mod_security) mod_security (id:210730) triggered by 74.7.243.214 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 74.7.243.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 02:30:40.110984 2026] [security2:error] [pid 30183:tid 30207] [client 74.7.243.214:53986] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||whitecrosslibrary.com|F|2"] [data ".gmentz.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "whitecrosslibrary.com"] [uri "/www.GMentz.com"] [unique_id "ajTiEG7k8rJcHlm5w-p3oQAAAZY"], referer: https://whitecrosslibrary.com/tax-tips
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-19 03:52:28
(6 days ago)
Reported from Nginx log analysis 11. Log: 74.7.243.214 - - [19/Jun/2026:xx:xx:xx 0200] "GET / HTTP/ ...
show more
Reported from Nginx log analysis 11. Log: 74.7.243.214 - - [19/Jun/2026:xx:xx:xx 0200] "GET / HTTP/2.0" xxx xxx "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; https://openai.com/gptbot)" "-" "US United States Atlanta" "AS8075" "Microsoft Corporation"
show less
Port Scan
Brute-Force
SSH