π³π±
Site.eu
2026-09-17 09:31:50
(33 minutes ago)
Excessive multi-domain requests
Brute-Force
π³π±
Alt255
2026-09-17 04:36:09
(5 hours ago)
[ti-10al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-10al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 172.105.64.41 - - [17/Sep/2026:06:36:06 +0200] "GET /365fit.nl:80.key HTTP/1.1" 404 6315 "http://365fit.nl:80/365fit.nl:80.key" "Mozilla/5.0 (CentOS; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
172.105.64.41 - - [17/Sep/2026:06:36:07 +0200] "GET /server.key HTTP/1.1" 404 6315 "http://365fit.nl:80/server.key" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.2.1 Safari/605.4.19"
172.105.64.41 - - [17/Sep/2026:06:36:07 +0200] "GET /key.pem HTTP/1.1" 404 6315 "http://365fit.nl:80/key.pem" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
172.105.64.41 - - [17/Sep/2026:06:36:07
...
show less
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-09-17 00:33:18
(9 hours ago)
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 172.105.64.41 - - [17/Sep/2026:02:33:02 +0200] "GET /.ssh/id_ed25519 HTTP/1.1" 301 474 "-" "Mozilla/5.0 (Windows NT 10.0; rv:109.0) Gecko/20100101 Firefox/115.0"
...
show less
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-09-16 20:11:40
(13 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-09-15 18:03:50
(1 day ago)
[ti-01ov] Web exploit scanning: 14 suspicious requests detected by fail2ban jail <name>. Example: 17 ...
show more
[ti-01ov] Web exploit scanning: 14 suspicious requests detected by fail2ban jail <name>. Example: 172.105.64.41 - - [13/Sep/2026:14:22:34 +0200] "GET /.ssh/id_rsa_1024 HTTP/1.1" 301 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:109.0) Gecko/20100101 Firefox/112.0"
172.105.64.41 - - [13/Sep/2026:14:22:34 +0200] "GET /.ssh/id_ed25519 HTTP/1.1" 301 546 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:86.0) Gecko/20100101 Firefox/86.0"
172.105.64.41 - - [13/Sep/2026:14:22:34 +0200] "GET /.ssh/id_rsa HTTP/1.1" 301 538 "-" "Mozilla/5.0 (ZZ; Linux i686; rv:128.0) Gecko/20100101 Firefox/128.0"
172.105.64.41 - - [13/Sep/2026:14:22:34 +0200] "GET /.ssh/id_rsa_3072 HTTP/1.1" 301 548 "-" "Mozilla/5.0 (ZZ; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
172.105.64.41 - -
...
show less
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-09-15 14:07:25
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π³π±
GabrielJST
2026-09-15 13:25:19
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 172.105.64.41 (DE/Germany/172-105-64-41 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 172.105.64.41 (DE/Germany/172-105-64-41.ip.linodeusercontent.com): (CF_ENABLE)
show less
SQL Injection
π³π±
Alt255
2026-09-15 13:07:40
(1 day ago)
[ti-29al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-29al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 172.105.64.41 - - [15/Sep/2026:15:07:20 +0200] "GET /.ssh/id_ed25519 HTTP/1.1" 404 47997 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_6) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/15.6.1 Safari/605.1.15"
...
show less
Bad Web Bot
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-09-15 10:56:21
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
Anonymous
2026-09-15 10:32:20
(1 day ago)
Blocked: Reason='Suspicious traffic score=60 (review-based detection)'; Requests=48
Hacking
π³π±
Site.eu
2026-09-15 10:00:10
(2 days ago)
Excessive 404/403 errors
Brute-Force
π³π±
BlueWire Hosting
2026-09-15 09:51:41
(2 days ago)
Aggressive scanning resulting into 404
Bad Web Bot
π³π±
Site.eu
2026-09-15 09:44:22
(2 days ago)
Excessive multi-domain requests
Brute-Force
π³π±
Brict IT
2026-09-15 09:02:22
(2 days ago)
[Tue Sep 15 11:02:21.815915 2026] [authz_core:error] [pid 2590608:tid 2590618] [client 172.105.64.41 ...
show more
[Tue Sep 15 11:02:21.815915 2026] [authz_core:error] [pid 2590608:tid 2590618] [client 172.105.64.41:0] AH01630: client denied by server configuration: /var/www/vhosts/brict.it/httpdocs/.ftpconfig, referer: http://brictit.nl:80/.ftpconfig
show less
DDoS Attack
FTP Brute-Force
π³π±
Brict IT
2026-09-15 08:42:58
(2 days ago)
[Tue Sep 15 10:42:57.911169 2026] [authz_core:error] [pid 2590648:tid 2590669] [client 172.105.64.41 ...
show more
[Tue Sep 15 10:42:57.911169 2026] [authz_core:error] [pid 2590648:tid 2590669] [client 172.105.64.41:0] AH01630: client denied by server configuration: /var/www/vhosts/brict.it/httpdocs/.ssh, referer: http://brictit.nl:80/.ssh/id_rsa
show less
DDoS Attack
FTP Brute-Force