๐ฉ๐ช
Alfafoxtrot
2026-10-06 07:51:44
(28 minutes ago)
Reason: exe suspicious | src-ip: 136.85.44.85 | dport=80 | Protoc.=TCP | Inc. 2d: 48
Exploited Host
Hacking
๐ฉ๐ช
janbro
2026-10-05 17:59:17
(14 hours ago)
Automated web application attack detected.
Port Scan
Hacking
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-10-05 17:50:04
(14 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
Anonymous
2026-10-05 14:51:20
(17 hours ago)
[Mon Oct 05 16:51:10.149145 2026] [proxy_fcgi:error] [pid 1469:tid 1647] [client 136.85.44.85:48884] ...
show more
[Mon Oct 05 16:51:10.149145 2026] [proxy_fcgi:error] [pid 1469:tid 1647] [client 136.85.44.85:48884] AH01071: Got error 'Primary script unknown'
[Mon Oct 05 16:51:10.413974 2026] [proxy_fcgi:error] [pid 1471:tid 1580] [client 136.85.44.85:48926] AH01071: Got error 'Primary script unknown'
[Mon Oct 05 16:51:10.413974 2026] [proxy_fcgi:error] [pid 1471:tid 1580] [client 136.85.44.85:48926] AH01071: Got error 'Primary script unknown'
[Mon Oct 05 16:51:18.918277 2026] [proxy_fcgi:error] [pid 1469:tid 1652] [client 136.85.44.85:48914] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack
Anonymous
2026-10-05 12:16:22
(20 hours ago)
[Mon Oct 05 12:18:49.723952 2026] [proxy_fcgi:error] [pid 1469:tid 1635] [client 136.85.44.85:54168] ...
show more
[Mon Oct 05 12:18:49.723952 2026] [proxy_fcgi:error] [pid 1469:tid 1635] [client 136.85.44.85:54168] AH01071: Got error 'Primary script unknown'
[Mon Oct 05 12:18:49.995153 2026] [proxy_fcgi:error] [pid 1471:tid 1590] [client 136.85.44.85:54182] AH01071: Got error 'Primary script unknown'
[Mon Oct 05 12:54:26.206799 2026] [proxy_fcgi:error] [pid 1469:tid 1626] [client 136.85.44.85:59900] AH01071: Got error 'Primary script unknown'
[Mon Oct 05 12:54:26.472328 2026] [proxy_fcgi:error] [pid 1469:tid 1648] [client 136.85.44.85:59892] AH01071: Got error 'Primary script unknown'
[Mon Oct 05 14:16:21.311256 2026] [proxy_fcgi:error] [pid 4478:tid 4519] [client 136.85.44.85:33840] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
Holger
2026-10-05 09:43:27
(22 hours ago)
WordPress WebAttack
Brute-Force
Web App Attack
๐ฉ๐ช
Marc
2026-10-05 09:29:51
(22 hours ago)
136.85.44.85 - - [05/Oct/2026:11:29:51 +0200] "GET /account/login HTTP/2.0" 404 291 "-" "Mozilla/5.0 ...
show more
136.85.44.85 - - [05/Oct/2026:11:29:51 +0200] "GET /account/login HTTP/2.0" 404 291 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36" 136.85.44.85 - - [05/Oct/2026:11:29:51 +0200] "GET /z9x8c7v6b5-debug-trigger-account.tortenatelier-schwanbeck.de HTTP/2.0" 404 269 "-" "Mozilla/5.0 (compatible; YouBot/1.0; +https://you.com/bot)" 136.85.44.85 - - [05/Oct/2026:11:29:51 +0200] "GET /console HTTP/2.0" 404 269 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36"
show less
Brute-Force
Anonymous
2026-10-05 08:17:21
(1 day ago)
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2026-10-05 08:05:26
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1248
Exploited Host
Web App Attack
๐ซ๐ท
sthoyer.de
2026-10-05 07:58:38
(1 day ago)
136.85.44.85 - - [05/Oct/2026:09:58:36 +0200] "GET /auth HTTP/2" 302 495 "-" "Mozilla/5.0 (Macintosh ...
show more
136.85.44.85 - - [05/Oct/2026:09:58:36 +0200] "GET /auth HTTP/2" 302 495 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
136.85.44.85 - - [05/Oct/2026:09:58:36 +0200] "GET /users/login HTTP/2" 302 495 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
136.85.44.85 - - [05/Oct/2026:09:58:36 +0200] "GET /auth/login HTTP/2" 302 495 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 Edg/153.0.0.0"
...
show less
Web App Attack
๐ฉ๐ช
gadix
2026-10-05 07:49:03
(1 day ago)
[05/Oct/2026:09:49:01.072294 +0200] asNWbeJ8jdSY5q1LwbQcKAAAAJc 136.85.44.85 57048 127.0.0.1 7081
[0 ...
show more
[05/Oct/2026:09:49:01.072294 +0200] asNWbeJ8jdSY5q1LwbQcKAAAAJc 136.85.44.85 57048 127.0.0.1 7081
[05/Oct/2026:09:49:01.632529 +0200] asNWbeJ8jdSY5q1LwbQcNgAAAJM 136.85.44.85 57164 127.0.0.1 7081
[05/
...
show less
Web App Attack
๐ฆ๐น
penguin-solutions.at
2026-10-05 07:41:53
(1 day ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
๐ฉ๐ช
Alfafoxtrot
2026-10-05 07:31:49
(1 day ago)
Reason: exe suspicious | src-ip: 136.85.44.85 | dport=80 | Protoc.=TCP | Inc. 2d: 48
Exploited Host
Hacking
๐ฉ๐ช
snhosting
2026-10-05 07:16:51
(1 day ago)
136.85.44.85 - - [05/Oct/2026:09:16:41 +0200] "GET /.npmrc HTTP/2.0" 200 1606 "-" "Mozilla/5.0 (comp ...
show more
136.85.44.85 - - [05/Oct/2026:09:16:41 +0200] "GET /.npmrc HTTP/2.0" 200 1606 "-" "Mozilla/5.0 (compatible; Baiduspider/2.0; +http://www.baidu.com/search/spider.html)"
136.85.44.85 - - [05/Oct/2026:09:16:42 +0200] "GET /@fs/src/.env?raw?? HTTP/2.0" 200 1601 "-" "Mozilla/5.0 (compatible; Kimi-SearchBot/1.0; +https://kimi.ai/)"
136.85.44.85 - - [05/Oct/2026:09:16:42 +0200] "GET /@fs/app/.env?raw?? HTTP/2.0" 200 1606 "-" "Mozilla/5.0 (compatible; YiBot/1.0; +https://01.ai/)"
136.85.44.85 - - [05/Oct/2026:09:16:42 +0200] "GET /@fs/..%252f..%252f..%252f..%252f..%252froot/.env?raw?? HTTP/2.0" 200 1606 "-" "Mozilla/5.0 (compatible; xAI-Grok/1.0; +https://x.ai/)"
136.85.44.85 - - [05/Oct/2026:09:16:42 +0200] "GET /@fs/../.env?raw?? HTTP/2.0" 200 1606 "-" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)"
...
show less
DNS Compromise
DNS Poisoning
Phishing
Email Spam
Brute-Force
Web App Attack
SSH
๐ฉ๐ช
jack252
2026-10-05 07:12:54
(1 day ago)
2026/10/05 09:12:52 [error] 1331#1331: *30313 open() "/etc/nginx/html/cgi-bin/php-cgi.exe" failed (2 ...
show more
2026/10/05 09:12:52 [error] 1331#1331: *30313 open() "/etc/nginx/html/cgi-bin/php-cgi.exe" failed (2: No such file or directory), client: 136.85.44.85, server: smarthomeklar.de, request: "POST /cgi-bin/php-cgi.exe?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input HTTP/2.0", host: "smarthomeklar.de"
2026/10/05 09:12:52 [error] 1331#1331: *30313 open() "/etc/nginx/html/cgi-bin/php" failed (2: No such file or directory), client: 136.85.44.85, server: smarthomeklar.de, request: "POST /cgi-bin/php?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input HTTP/2.0", host: "smarthomeklar.de"
2026/10/05 09:12:53 [error] 1331#1331: *30313 open() "/etc/nginx/html/cgi-bin/php-cgi" failed (2: No such file or directory), client: 136.85.44.85, server: smarthomeklar.de, request: "POST /cgi-bin/php-cgi?-d+allow_url_include%3don+-d+auto_prepend_file%3dphp://input HTTP/2.0", host: "smarthomeklar.de"
...
show less
Brute-Force
Bad Web Bot