Anonymous
2026-06-12 23:27:35
(6 days ago)
SIEM ALERT AUTO REPORT
Email Spam
๐บ๐ธ
kosada.com
2026-06-12 14:07:34
(6 days ago)
Web vulnerability probing: /xui (bogus vhost/SNI)
Web App Attack
๐ซ๐ท
Fasetech
2026-06-08 21:32:34
(1 week ago)
SecLedge detected suspicious activity. Score: 222.6. Sensor: T-Pot.
Brute-Force
Web App Attack
Anonymous
2026-06-08 15:00:08
(1 week ago)
Web App Attack, Hacking
Hacking
Web App Attack
Anonymous
2026-06-08 11:46:14
(1 week ago)
104.164.62.7 - - [08/Jun/2026:11:46:12 +0000] "\x16\x03\x01\x05\xAC\x01\x00\x05\xA8\x03\x03\xFE\xB7\ ...
show more
104.164.62.7 - - [08/Jun/2026:11:46:12 +0000] "\x16\x03\x01\x05\xAC\x01\x00\x05\xA8\x03\x03\xFE\xB7\xEAO\xC7\xEC\x1B>\xFDZ\xC6\xFE\x90\xBDQt:\xF0\x9E\xFA* \xD0\x22D\x9A#\xA9\x0Fai\xEA \xE1E\xE0\xE8\xD7Z-\xB9Y\xA9R\x13" 400 166 "-" "-"
104.164.62.7 - - [08/Jun/2026:11:46:13 +0000] "\x16\x03\x01\x05\xAC\x01\x00\x05\xA8\x03\x03\xD83z\xE2\xB0\xD4N8R\x13TI\xAA\xCDO`\xA8\xC7\xD1\xDE\xF29l\x1DV\xF8\x87\xE9>\x8B\xA3* \xA8\xB3n+\x13$\xD9\xDF\xD8s:\xA1f\xC5\xCC?Dd\xE6pkV\xE3s\x1F<\xFC\x1EHOmt\x00\x1A\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 166 "-" "-"
104.164.62.7 - - [08/Jun/2026:11:46:13 +0000] "\x16\x03\x01\x05\xAC\x01\x00\x05\xA8\x03\x034\xA6j\xC5\xD01\xD2p7\xC7C\xAE\xF6\xD7h_/>\xC4\xEC\x94\x1F\x90\x10\xE3\xB98g\xD9}\xB8? \xB5\xA3\xEA\x8Ac\xA5\xFE\x8C\xDD@Oe\x8A\xAAE{q\xE5D\xF0\xFC\x09\x96\xC5\xB9\x97<W\xEA0\xF7\x01\x00\x1A\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 166 "-" "-"
...
show less
Brute-Force
๐ฉ๐ช
Serpentex
2026-06-08 11:40:02
(1 week ago)
104.164.62.7 - - [08/Jun/2026:13:40:00 +0200] "GET / HTTP/1.1" 400 248 "-" "Mozilla/5.0 (Macintosh; ...
show more
104.164.62.7 - - [08/Jun/2026:13:40:00 +0200] "GET / HTTP/1.1" 400 248 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.5 Safari/605.1.15"
104.164.62.7 - - [08/Jun/2026:13:40:01 +0200] "GET /login HTTP/1.1" 400 248 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.5 Safari/605.1.15"
104.164.62.7 - - [08/Jun/2026:13:40:01 +0200] "GET /dashboard HTTP/1.1" 400 650 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
keep_out
2026-06-08 11:19:59
(1 week ago)
Probing\(5\) HTTP Ports
...
Bad Web Bot
Web App Attack
๐ฉ๐ช
_ArminS_
2026-06-08 11:19:32
(1 week ago)
SP-Scan 49748:8082 detected 2026.06.08 13:19:32
blocked until 2026.07.28 06:22:19
Port Scan
๐ฉ๐ช
Richie
2026-05-28 23:03:19
(3 weeks ago)
[HOST1] Web probe: GET / -> HTTP 400; UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) Version/17.5 ...
show more
[HOST1] Web probe: GET / -> HTTP 400; UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) Version/17.5 Safari/605.1.15
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Richie
2026-05-28 21:13:17
(3 weeks ago)
[HOST1] Web probe: GET / -> HTTP 400; UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) Chrome/126.0.0.0 ...
show more
[HOST1] Web probe: GET / -> HTTP 400; UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) Chrome/126.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-05-28 21:08:31
(3 weeks ago)
F2B - Malicious activity detected. Bad requests. -c0423ad6-
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-05-28 20:36:52
(3 weeks ago)
[Thu May 28 22:36:51.790898 2026] [authz_core:error] [pid 14991] [client 104.164.62.7:60560] AH01630 ...
show more
[Thu May 28 22:36:51.790898 2026] [authz_core:error] [pid 14991] [client 104.164.62.7:60560] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu May 28 22:36:51.958077 2026] [authz_core:error] [pid 15020] [client 104.164.62.7:60562] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu May 28 22:36:52.126838 2026] [authz_core:error] [pid 13488] [client 104.164.62.7:60564] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ฆ๐น
Starburst SysOp Team
2026-05-28 20:26:28
(3 weeks ago)
Host header is a numeric IP address. Pattern match "(?:^( (920350-vie6-1)
Hacking
Bad Web Bot
๐ฉ๐ช
keep_out
2026-05-28 20:24:01
(3 weeks ago)
Probing\(3\) HTTP Ports
...
Bad Web Bot
Web App Attack
๐ฉ๐ช
Serpentex
2026-05-28 20:18:39
(3 weeks ago)
104.164.62.7 - - [28/May/2026:22:18:37 +0200] "GET / HTTP/1.1" 400 248 "-" "Mozilla/5.0 (Macintosh; ...
show more
104.164.62.7 - - [28/May/2026:22:18:37 +0200] "GET / HTTP/1.1" 400 248 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) Version/17.5 Safari/605.1.15"
104.164.62.7 - - [28/May/2026:22:18:37 +0200] "GET /login HTTP/1.1" 400 650 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) Chrome/126.0.0.0 Safari/537.36"
104.164.62.7 - - [28/May/2026:22:18:37 +0200] "GET /dashboard HTTP/1.1" 400 248 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) Version/17.5 Safari/605.1.15"
...
show less
Bad Web Bot
Web App Attack