Anonymous
2026-06-28 04:11:17
(18 hours ago)
178.128.221.39 - - [28/Jun/2026:04:11:13 +0000] "GET /favicon.ico HTTP/1.1" 444 0 "-" "Go-http-clien ...
show more
178.128.221.39 - - [28/Jun/2026:04:11:13 +0000] "GET /favicon.ico HTTP/1.1" 444 0 "-" "Go-http-client/1.1"
178.128.221.39 - - [28/Jun/2026:04:11:14 +0000] "GET /favicon.ico HTTP/1.1" 444 0 "-" "Go-http-client/1.1"
178.128.221.39 - - [28/Jun/2026:04:11:15 +0000] "GET /favicon.ico HTTP/1.1" 444 0 "-" "Go-http-client/1.1"
...
show less
Bad Web Bot
Web App Attack
๐ท๐บ
6o6ep
2026-06-28 01:34:53
(21 hours ago)
connection via IP or to a non-existent subdomain: GET /favicon.ico HTTP/1.1
Port Scan
Hacking
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-21 20:15:08
(1 week ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐ฉ๐ช
Enno
2026-06-20 19:47:47
(1 week ago)
P04::Fail2Ban: automated bot scanning / credential probing detected.
Web App Attack
Bad Web Bot
๐บ๐ธ
itsnixk
2026-06-20 06:17:29
(1 week ago)
(mod_security) mod_security (id:920350) triggered by 178.128.221.39 (SG/Singapore/-): 1 in the last ...
show more
(mod_security) mod_security (id:920350) triggered by 178.128.221.39 (SG/Singapore/-): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Sat Jun 20 02:17:25.834530 2026] [security2:error] [pid 612055:tid 612450] [client 178.128.221.39:36148] ModSecurity: Access denied with code 406 (phase 1). Pattern match "(?:^([\\\\d.]+|\\\\[[\\\\da-f:]+\\\\]|[\\\\da-f:]+)(:[\\\\d]+)?$)" at REQUEST_HEADERS:Host. [file "/etc/modsecurity.d/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "773"] [id "920350"] [msg "Host header is a numeric IP address"] [redacted] [severity "WARNING"] [ver "OWASP_CRS/4.26.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/PROTOCOL-ENFORCEMENT"] [tag "capec/1000/210/272"] [redacted] [uri "/favicon.ico"] [unique_id "ajYwdYtuiibVeOtwmRi7dwAAAMA"]
show less
Port Scan
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-19 20:15:50
(1 week ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-18 20:15:31
(1 week ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐บ๐ธ
Player Unknown
2026-06-17 06:29:50
(1 week ago)
178.128.221.39 - - [16/Jun/2026:23:29:46 -0700] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\x93R\x ...
show more
178.128.221.39 - - [16/Jun/2026:23:29:46 -0700] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\x93R\xA6S\xF8\xB2\xB7\x83\xF8\xCE\x1E8q\x9A\xAEj\xFF\x14\x0C\x1D2\xAE\x01\xC1\xF2\xC3\xDA\xF0M\xB8O\xD2 \xACw\xA0\xCEs\xA2\x02\xE1D\xC4\xBE\xB27\xE7\xA8<\x15p\x17\xA3\x9E\xFF\x02\xE5\xB3jd\xEFl\xC2\xD4_\x00&\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 157 "-" "-"
178.128.221.39 - - [16/Jun/2026:23:29:47 -0700] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\xB5\xCF7\x0F\xEAoP\x94\x22\x8D=8T\x022z\x81\xAB\xC1\xF0(\xFC\xF4\xF6\xF0\xA6\x13\xEB\xBC\x16\x91\xF2 \x04\x8F\xFEn\x9C\xA3\xD9\xC8\xFEw\xA4U\xFC\xFB\xCC\x8C\xCA\xE0\xE0\xBD\xAD\x17\xD3\x98%,\xA9\x1Ahi\xDC\x99\x00&\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 157 "-" "-"
178.128.221.39 - - [16/Jun/2026:23:29:47 -0700] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\xF1\x0E\xE9\x1E1Q\x02\x0B\x9Eo\xD8\x85\x9D\xE8S" 400 157 "-" "-"
178.128.221.39 - - [16/Jun/2026:23:29:49 -0700] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA
...
show less
Brute-Force
SSH
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-16 20:16:09
(1 week ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-14 20:16:26
(2 weeks ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-13 20:16:24
(2 weeks ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐ฌ๐ง
seniorlinuxadmin
2026-06-12 23:16:38
(2 weeks ago)
178.128.221.39 - - [13/Jun/2026:00:16:36 +0100] "GET /favicon.ico HTTP/1.1" 403 158 "-" "Go-http-cli ...
show more
178.128.221.39 - - [13/Jun/2026:00:16:36 +0100] "GET /favicon.ico HTTP/1.1" 403 158 "-" "Go-http-client/1.1"
show less
Port Scan
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-11 20:17:21
(2 weeks ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐ฟ๐ฆ
slartybartfast69420blazit
2026-06-09 20:17:15
(2 weeks ago)
Fail2ban picked up 178.128.221.39 attacking nginx
Web App Attack
๐ซ๐ฎ
habs
2026-06-08 11:26:53
(2 weeks ago)
178.128.221.39 - - [08/Jun/2026:14:26:51 +0300] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\xE7\xE ...
show more
178.128.221.39 - - [08/Jun/2026:14:26:51 +0300] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\xE7\xE1\x94\x88\xE6Uw\x03\xBA\xBB\x8E\xAD\x1F\x8A<\x12s\xCC\x03\xD5\x0F\xFC~\x86\xB1\x8C\xC0\xB2\xBC\xB7\xDC\x8F \xD3\xDF(x\xFCZEe\xE7\xCE\x9D@\x1C[`@\xEA\xD6\xB6R{\xE1\xC1\x19[\xACV\xF7\xBD\xDC\x08\x99\x00&\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 150 "-" "-"
178.128.221.39 - - [08/Jun/2026:14:26:52 +0300] "\x16\x03\x01\x00\xEE\x01\x00\x00\xEA\x03\x03\x9C\xC3^B+\xDFfK\xC0\x9C=\x93\xAAW\x1C\x8CDI\xA8\xE2\xEB\x95\xB0\xBB\xEC\xF4hr\x93<\xE6\xA2 \xD5\xD4R\xB0Ur\xCD\xF3Qo\x0B\x18\x13\x9D\x9A\xA3\xDA\xBC\xD0\xF3\x22\x5C\xF1\x17\xD7*1\x86chy\xF3\x00&\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 150 "-" "-"
...
show less
Port Scan
Bad Web Bot