IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
Important Note: 139.87.112.145 is an IP address from within
our whitelist belonging to the subnet
139.87.112.0/23,
which we identify as: "Qualys Scanner".
Whitelisted netblocks are typically owned by trusted entities, such as Google
or Microsoft who may use them for search engine spiders. However, these same entities
sometimes also provide cloud servers and mail services which are easily abused. Pay special
attention when trusting or distrusting these IPs.
IP detect different validations of the infrastructure with path traversal rutes: "/login/commerce.cg ...
show moreIP detect different validations of the infrastructure with path traversal rutes: "/login/commerce.cgi?page=../../../../../../windows/system32/drivers/etc/hosts%00index.html"
show less
{"level":"info","ts":1765979658.9772158,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1765979658.9772158,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"45066","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/","headers":{}},"bytes_read":0,"user_id":"","duration":0.00005372,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://159.89.98.98/"],"Content-Type":[]}}
{"level":"info","ts":1765979659.8192167,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"45174","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/DeviceInformation","headers":{}},"bytes_read":0,"user_id":"","duration":0.000050399,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://159.89.98.98/DeviceInformation"],"Content-Type":[]}}
{"level":"info","ts":1765979660.0986385,"logger":"http.lo
...
show less
{"level":"info","ts":1763219671.0121067,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1763219671.0121067,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"39090","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/","headers":{"Connection":["Keep-Alive"],"User-Agent":["QualysGuard"],"Qualys-Scan":["VM"]}},"bytes_read":0,"user_id":"","duration":0.00004417,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://159.89.98.98/"],"Content-Type":[]}}
{"level":"info","ts":1763219794.4401243,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"48282","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/","headers":{}},"bytes_read":0,"user_id":"","duration":0.000044739,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://159.89.98.98/"],"Content-Type":[]}}
{"level":"info
...
show less
{"level":"info","ts":1760503987.255277,"logger":"http.log.access.log1","msg":"handled request","requ ...
show more{"level":"info","ts":1760503987.255277,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"37252","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/","headers":{}},"bytes_read":0,"user_id":"","duration":0.00004598,"size":0,"status":308,"resp_headers":{"Connection":["close"],"Location":["https://159.89.98.98/"],"Content-Type":[],"Server":["Caddy"]}}
{"level":"info","ts":1760503988.1022363,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"37738","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/DeviceInformation","headers":{}},"bytes_read":0,"user_id":"","duration":0.00004332,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://159.89.98.98/DeviceInformation"],"Content-Type":[]}}
{"level":"info","ts":1760503988.3860824,"logger":"http.log.
...
show less
Sep 20 18:42:37 henshouse sshd[251230]: Invalid user NoSuchUser from 139.87.112.145 port 45806
Sep 2 ...
show moreSep 20 18:42:37 henshouse sshd[251230]: Invalid user NoSuchUser from 139.87.112.145 port 45806
Sep 20 18:42:41 henshouse sshd[251342]: Invalid user NoSuchUser from 139.87.112.145 port 52506
Sep 20 18:42:42 henshouse sshd[251374]: Invalid user f2r2036bfh9aprd from 139.87.112.145 port 53104
...
show less
Sep 18 07:39:55 instance-20211220-1015 sshd[2995368]: Invalid user NoSuchUser from 139.87.112.145 po ...
show moreSep 18 07:39:55 instance-20211220-1015 sshd[2995368]: Invalid user NoSuchUser from 139.87.112.145 port 37272
Sep 18 07:40:39 instance-20211220-1015 sshd[2995732]: Invalid user NoSuchUser from 139.87.112.145 port 57960
Sep 18 07:40:40 instance-20211220-1015 sshd[2995734]: Invalid user zsouphih from 139.87.112.145 port 58258
Sep 18 07:40:42 instance-20211220-1015 sshd[2995758]: Invalid user liqq8si57ah6u1k from 139.87.112.145 port 58592
Sep 18 07:40:43 instance-20211220-1015 sshd[2995760]: Invalid user dagiu47bh653d from 139.87.112.145 port 58984
...
show less
{"level":"info","ts":1756663422.7721195,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1756663422.7721195,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"33048","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/","headers":{"Qualys-Scan":["VM"],"Connection":["Keep-Alive"],"User-Agent":["QualysGuard"]}},"bytes_read":0,"user_id":"","duration":0.00004256,"size":0,"status":308,"resp_headers":{"Connection":["close"],"Location":["https://159.89.98.98/"],"Content-Type":[],"Server":["Caddy"]}}
{"level":"info","ts":1756663546.3348656,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"139.87.112.145","remote_port":"57150","client_ip":"139.87.112.145","proto":"HTTP/1.1","method":"GET","host":"159.89.98.98","uri":"/","headers":{}},"bytes_read":0,"user_id":"","duration":0.000063779,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://159.89.98.98/"],"Content-Type":[]}}
{"level":"info
...
show less