Anonymous
2026-09-18 04:29:48
(3 hours ago)
by Attack Lagwatch(gw)
DDoS Attack
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฉ๐ช
MaxMeier
2026-09-18 00:17:55
(7 hours ago)
201.79.13.35 - - [18/Sep/2026:02:16:50 +0200] "GET / HTTP/1.0" 444 0 "-" "-"
201.79.13.35 - - [18/Se ...
show more
201.79.13.35 - - [18/Sep/2026:02:16:50 +0200] "GET / HTTP/1.0" 444 0 "-" "-"
201.79.13.35 - - [18/Sep/2026:02:16:50 +0200] "OPTIONS / HTTP/1.0" 444 0 "-" "-"
201.79.13.35 - - [18/Sep/2026:02:16:50 +0200] "GET /nice%20ports%2C/Tri%6Eity.txt%2ebak HTTP/1.0" 444 0 "-" "-"
201.79.13.35 - - [18/Sep/2026:02:16:50 +0200] "\x00\x00\x07\x00\x08\x00\x03\x00\x04\x00\x05\x00\x06" 400 150 "-" "-"
201.79.13.35 - - [18/Sep/2026:02:16:55 +0200] "" 400 0 "-" "-"
201.79.13.35 - - [18/Sep/2026:02:16:55 +0200] "OPTIONS / RTSP/1.0" 400 150 "-" "-"
201.79.13.35 - - [18/Sep/2026:02:16:56 +0200] "GET /odinhttpcall1789690615 HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; Odin; https://docs.getodin.com/)"
201.79.13.35 - - [18/Sep/2026:02:16:56 +0200] "POST /sdk HTTP/1.1" 444 0 "-" "Mozilla/5.0 (compatible; Odin; https://docs.getodin.com/)"
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-18 00:08:41
(7 hours ago)
[DC: IP:151.1.252.27] ntopng alert: blacklisted_client_contact,ndpi_unsafe_protocol
Hacking
๐ช๐ธ
Gem
2026-09-17 22:00:45
(10 hours ago)
Unauthorized mail server scanning
Port Scan
๐ฉ๐ช
AetherFox
2026-09-17 18:01:15
(14 hours ago)
AetherFox VoidGuard detected: [Thu Sep 17 18:01:15.258821 2026] [authz_core:error] [pid 2761858:tid ...
show more
AetherFox VoidGuard detected: [Thu Sep 17 18:01:15.258821 2026] [authz_core:error] [pid 2761858:tid 2761868] [client 201.79.13.35:27755] AH01630: client denied by server configuration: proxy:http://[MASKED]/odinhttpcall1789668075
[Thu Sep 17 18:01:15.258821 2026] [authz_core:error] [pid 2761858:tid 2761897] [client 201.79.13.35:21225] AH01630: client denied by server configuration: proxy:http://[MASKED]/sdk
[Thu Sep 17 18:01:15.258962 2026] [authz_core:error] [pid 2761858:tid 2761897] [client 201.79.13.35:21225] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Thu Sep 17 18:01:15.258974 2026] [authz_core:error] [pid 2761858:tid 2761868] [client 201.79.13.35:27755] AH01630: client denied by server configuration: /var/www/html/ERRORpages/403.html
[Thu Sep 17 18:01:15.271973 2026] [authz_core:error] [pid 2761858:tid 2761878] [client 201.79.13.35:22331] AH01630: client denied by server configuration: proxy:http://[MASKED]/HNAP1
...
show less
Bad Web Bot
Web App Attack
๐ฏ๐ต
VXG-NET
2026-09-17 17:16:53
(14 hours ago)
port=5000, indicator_type=hacktool
Hacking
๐ฉ๐ช
MBombeck
2026-09-17 09:26:15
(22 hours ago)
Fail2Ban/traefik-botsearch on apps-01: banned after 5 failures
Web App Attack
๐บ๐ธ
Rip
2026-09-17 06:25:10
(1 day ago)
SMTP Server abuse, connection rates exceeded.
Brute-Force
Bad Web Bot
๐บ๐ธ
crooze.net
2026-09-17 04:33:02
(1 day ago)
201.79.13.35 - - [17/Sep/2026:00:33:01 -0400] "\x16\x03\x01\x02\x00\x01\x00\x01\xFC\x03\x03X\x8B\x7F ...
show more
201.79.13.35 - - [17/Sep/2026:00:33:01 -0400] "\x16\x03\x01\x02\x00\x01\x00\x01\xFC\x03\x03X\x8B\x7F\xED?\xF7\xC8\xA7I\xC9\xBC6\x9C\xE4\x8E\x1D\x1ErZ\x97\xB6P\x06HK\x06\x0F\xE6\x03<C\x11 \x07s\xB6m\xE0x\x89\x7FQ,W\x08J\xA3\xB1\xF2u\xF1\xF1~\x9E-\x9F\x0F\x9C(" 400 150 "-" "-"
...
show less
Hacking
Web App Attack
๐ต๐ฑ
bart@
2026-09-17 02:46:39
(1 day ago)
Automated scan detection against redacted protected targets. Hits=2; port 25 proto 6 detection honey ...
show more
Automated scan detection against redacted protected targets. Hits=2; port 25 proto 6 detection honeypot_tcp
show less
Port Scan
Anonymous
2026-09-17 00:44:22
(1 day ago)
[17/Sep/2026:10:44:21 +1000] "POST /sdk HTTP/1.1" 301 284 "Mozilla/5.0 (compatible; Odin; https://do ...
show more
[17/Sep/2026:10:44:21 +1000] "POST /sdk HTTP/1.1" 301 284 "Mozilla/5.0 (compatible; Odin; https://docs.getodin.com/)"
show less
Hacking
Web App Attack
๐ฉ๐ช
london2038.com
2026-09-17 00:05:09
(1 day ago)
Possible botnet zombie, targetting router/IoT vulnerabilities
201.79.13.35 - - [17/Sep/2026:02:05:04 ...
show more
Possible botnet zombie, targetting router/IoT vulnerabilities
201.79.13.35 - - [17/Sep/2026:02:05:04 +0200] "GET /HNAP1 HTTP/1.1" 421 173 "-" "Mozilla/5.0 (compatible; Odin; https://docs.getodin.com/)"
show less
Hacking
Exploited Host
Anonymous
2026-09-16 14:23:41
(1 day ago)
SMTP AUTH 201.79.13.35 (SMTP_LOGIN_ATTEMPT)
Brute-Force
๐ฉ๐ช
kkeyser
2026-09-16 10:13:34
(1 day ago)
GET /HNAP1 HTTP/1.1
Web App Attack
๐ซ๐ท
Feelautom
2026-09-16 07:24:26
(2 days ago)
[FeelAutom Auto-Ban] DirectIpScan: /evox/about (Score: 200)
Hacking