Anonymous
2026-06-10 10:30:09
(8 hours ago)
Triggered: repeated knocking on closed ports.
Port Scan
๐ง๐ท
somosbr
2026-06-10 10:11:42
(8 hours ago)
[2026-06-10T10:11:42Z] Unsolicited scan from 20.55.162.196 to port 8443/tcp
Port Scan
๐ซ๐ฎ
[email protected]
2026-06-10 09:18:12
(9 hours ago)
Attack attempt against Interwebbi servers; *Port Scan* detected from 20.55.162.196 (US/United States ...
show more
Attack attempt against Interwebbi servers; *Port Scan* detected from 20.55.162.196 (US/United States/-). 5 hits in the last 406 seconds; IP: 20.55.162.196; Ports: *; Direction: 0; Trigger: PS_LIMIT;
show less
Brute-Force
Anonymous
2026-06-10 08:53:48
(10 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐จ๐ฆ
Bots.go.to.hell
2026-06-10 08:36:59
(10 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-10 06:52:38
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 20.55.162.196 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 20.55.162.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 02:52:32.031472 2026] [security2:error] [pid 16525:tid 16525] [client 20.55.162.196:42740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.220"] [uri "/.git/config"] [unique_id "aikJsCVZfejMKPqGCf0EygAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-06-10 05:29:26
(13 hours ago)
Web vulnerability probing: /.env.local (bogus vhost/SNI)
Web App Attack
๐น๐ผ
tyetriiix
2026-06-10 05:00:13
(13 hours ago)
Wazuh Alert Evidence: 20.55.162.196 - - [10/Jun/2026:05:00:11 +0000] "GET /.git/HEAD HTTP/1.1" 502 1 ...
show more
Wazuh Alert Evidence: 20.55.162.196 - - [10/Jun/2026:05:00:11 +0000] "GET /.git/HEAD HTTP/1.1" 502 150 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:125.0) Gecko/20100101 Firefox/125.0" "-" Origin: "-" CORS_Header: "-" Sent_allow_origin: "-"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-10 04:53:20
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 20.55.162.196 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 20.55.162.196 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 00:53:12.691284 2026] [security2:error] [pid 10221:tid 10221] [client 20.55.162.196:43409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.210"] [uri "/.git/HEAD"] [unique_id "aijtuDqe6Y0EnxJgnzkeGwAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-06-01 05:51:10
(1 week ago)
tcp/6379
Port Scan
๐ณ๐ฑ
homeshowdomain.nl
2026-05-29 22:08:23
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-28.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
maxpower
2026-05-28 12:04:09
(1 week ago)
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 20.55.162.196 (US/United States/-): 2 in ...
show more
(exploit_critical) REGOLA 2 - Critical File Exploit Attempt 20.55.162.196 (US/United States/-): 2 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 20.55.162.196 - - [28/May/2026:14:04:02 +0200] "GET /.aws/credentials HTTP/2.0" 301 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.1 Safari/605.1.15" "20.55.162.196" host=yogiraji.it
20.55.162.196 - - [28/May/2026:14:04:03 +0200] "GET /.aws/credentials HTTP/2.0" 404 29582 "https://yogiraji.it/.aws/credentials" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.1 Safari/605.1.15" "20.55.162.196" host=www.yogiraji.it
show less
Port Scan