๐ซ๐ท
SpaceHost-Server
2026-09-19 22:14:26
(1 day ago)
Brute-Force
Web App Attack
Anonymous
2026-09-19 09:38:12
(1 day ago)
Bot / seems abusive / Apache connections: 37
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-18 19:04:18
(2 days ago)
[ti-01al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-01al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 104.154.92.184 - - [18/Sep/2026:21:04:03 +0200] "GET /auth/login HTTP/2.0" 404 1878 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"
104.154.92.184 - - [18/Sep/2026:21:04:03 +0200] "GET /api/v1/settings HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)"
104.154.92.184 - - [18/Sep/2026:21:04:03 +0200] "GET /secure HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Mobile Safari/537.36"
104.154.92.184 - - [18/Sep/2026:21:04:03 +0200] "GET /settings.json HTTP/2.0" 404 1855 "-" "Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)"
104.154.92.184 - - [18/
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
6kilowatti
2026-09-18 12:38:59
(2 days ago)
2026-09-18T15:38:58.829675+03:00 6kw kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:16:3e:b6:e7:09:78:9a:18 ...
show more
2026-09-18T15:38:58.829675+03:00 6kw kernel: [UFW BLOCK] IN=eth0 OUT= MAC=00:16:3e:b6:e7:09:78:9a:18:bd:57:7e:08:00 SRC=104.154.92.184 DST=5.61.88.83 LEN=60 TOS=0x00 PREC=0x00 TTL=57 ID=11811 DF PROTO=TCP SPT=37252 DPT=8443 WINDOW=65320 RES=0x00 SYN URGP=0
...
show less
Port Scan
Anonymous
2026-09-18 06:09:03
(2 days ago)
Automated vulnerability scanning and sensitive file probing against a secured web server. Attempted ...
show more
Automated vulnerability scanning and sensitive file probing against a secured web server. Attempted access to sensitive configuration files and common vulnerability paths.
show less
Brute-Force
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-09-18 06:01:11
(2 days ago)
Active Response: IP 104.154.92.184 Blocked via Firewall Drop. Threat Score: 3.7/10 (LOW). Confidence ...
show more
Active Response: IP 104.154.92.184 Blocked via Firewall Drop. Threat Score: 3.7/10 (LOW). Confidence: 30%. CVSS v3.1: 0/10 (None). CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:N. Bayesian Probability: 40%. MITRE ATT&CK: T1016 (System Network Configuration Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack
๐ง๐ฉ
mixmtech
2026-09-18 05:11:00
(2 days ago)
This IP is making repeated attack attempts on my website. Excessive crawling/scraping/requests/scan. ...
show more
This IP is making repeated attack attempts on my website. Excessive crawling/scraping/requests/scan. This behavior is consistent with a DDoS attack
show less
DDoS Attack
Bad Web Bot
Web App Attack
Web Spam
Hacking
๐ฎ๐ฉ
sockominfo
2026-09-18 05:00:53
(2 days ago)
Active Response: IP 104.154.92.184 Blocked via Firewall Drop. Threat Score: 3.9/10 (LOW). Confidence ...
show more
Active Response: IP 104.154.92.184 Blocked via Firewall Drop. Threat Score: 3.9/10 (LOW). Confidence: 30%. CVSS v3.1: 0/10 (None). CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:N. Bayesian Probability: 40%. MITRE ATT&CK: T1016 (System Network Configuration Discovery). Tactic: TA0001. Freshness: Fresh. Source Reputation: UNKNOWN. Methodology: CVSS 3.1 + Bayesian + Temporal + Environmental + MITRE ATT&CK + OWASP. Standards: ISO/IEC 27065:2022, NIST SP 800-30, IEEE S&P 2020. Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack
๐ฎ๐ฉ
sockominfo
2026-09-18 04:00:09
(2 days ago)
Active Response: IP 104.154.92.184 Blocked via Firewall Drop. Threat Score: 0/10 (INFORMATIONAL). Re ...
show more
Active Response: IP 104.154.92.184 Blocked via Firewall Drop. Threat Score: 0/10 (INFORMATIONAL). Reported by TangerangKota-CSIRT
show less
Hacking
Web App Attack
๐ฌ๐ง
Marten Mark
2026-09-18 03:54:08
(2 days ago)
104.154.92.184 - - [18/Sep/2026:03:54:06 +0000] "GET /actuator/loggers HTTP/2.0" 404 5334 "-" "Mozil ...
show more
104.154.92.184 - - [18/Sep/2026:03:54:06 +0000] "GET /actuator/loggers HTTP/2.0" 404 5334 "-" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)"
104.154.92.184 - - [18/Sep/2026:03:54:06 +0000] "GET /manage/env HTTP/2.0" 404 5334 "-" "Mozilla/5.0 (compatible; Hunyuan/1.0; +https://hunyuan.tencent.com/)"
104.154.92.184 - - [18/Sep/2026:03:54:06 +0000] "GET /config.json HTTP/2.0" 404 5334 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)"
104.154.92.184 - - [18/Sep/2026:03:54:06 +0000] "GET /dist/manifest.json HTTP/2.0" 404 5334 "-" "Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.0.0 Mobile Safari/537.36"
104.154.92.184 - - [18/Sep/2026:03:54:06 +0000] "GET /__/firebase/init.json HTTP/2.0" 404 5334 "-" "Mozilla/5.0 (compatible; cohere-ai; +https://cohere.com/crawler)"
104.154.92.184 - - [18/Sep/2026:03:54:06 +0000] "GET /dist/.vite/manifest.json HTTP/2.0" 404 5334 "-" "Mozilla/5.0 (Linux; Android
...
show less
Port Scan
Web App Attack
๐ฎ๐น
Inartis
2026-09-18 03:53:14
(2 days ago)
104.154.92.184 - - [18/Sep/2026:05:53:13 +0200] "GET /.git/config HTTP/2.0" 403 17 "-" "Mozilla/5.0 ...
show more
104.154.92.184 - - [18/Sep/2026:05:53:13 +0200] "GET /.git/config HTTP/2.0" 403 17 "-" "Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/)"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-09-18 03:10:36
(2 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฉ๐ช
macrob
2026-09-18 02:59:34
(2 days ago)
2026/09/18 02:59:32 [error] 3680940#3680940: *10154654 access forbidden by rule, client: 104.154.92. ...
show more
2026/09/18 02:59:32 [error] 3680940#3680940: *10154654 access forbidden by rule, client: 104.154.92.184, server: binixo.pl, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "binixo.pl", referrer: "https://beta.binixo.pl/dist/.vite/manifest.json"
2026/09/18 02:59:32 [error] 3680940#3680940: *10154654 access forbidden by rule, client: 104.154.92.184, server: binixo.pl, request: "GET /.vite/manifest.json HTTP/2.0", host: "binixo.pl", referrer: "https://beta.binixo.pl/.vite/manifest.json"
2026/09/18 02:59:32 [error] 3680942#3680942: *10154652 access forbidden by rule, client: 104.154.92.184, server: binixo.pl, request: "GET /dist/.env HTTP/2.0", host: "binixo.pl", referrer: "https://beta.binixo.pl/dist/.env"
...
show less
Web App Attack
๐ฉ๐ช
macrob
2026-09-18 00:36:04
(2 days ago)
2026/09/18 00:36:03 [error] 3435311#3435311: *9838413 access forbidden by rule, client: 104.154.92.1 ...
show more
2026/09/18 00:36:03 [error] 3435311#3435311: *9838413 access forbidden by rule, client: 104.154.92.184, server: binixo.pl, request: "GET /dist/.vite/manifest.json HTTP/2.0", host: "binixo.pl", referrer: "https://azure.binixo.pl/dist/.vite/manifest.json"
2026/09/18 00:36:03 [error] 3435311#3435311: *9838885 access forbidden by rule, client: 104.154.92.184, server: binixo.pl, request: "GET /.vite/manifest.json HTTP/2.0", host: "binixo.pl", referrer: "https://azure.binixo.pl/.vite/manifest.json"
2026/09/18 00:36:03 [error] 3435313#3435313: *9827753 access forbidden by rule, client: 104.154.92.184, server: binixo.pl, request: "GET /.aws/config HTTP/2.0", host: "binixo.pl", referrer: "https://azure.binixo.pl/.aws/config"
...
show less
Web App Attack
๐ฉ๐ช
Skyrider
2026-09-17 23:02:55
(3 days ago)
crowdsecurity/http-probing
Web App Attack