Anonymous
2026-09-07 12:22:52
(2 hours ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
🇬🇧
essinghigh
2026-09-07 07:55:14
(6 hours ago)
IPS Detection: 207.175.145.34 -> DPT: 80
Port Scan
🇺🇸
OceanTreasure
2026-09-07 07:55:05
(6 hours ago)
tcp/80; Java Debug Wire Protocol handshake sent to the HTTP port (JDWP remote code execution probe): ...
show more
tcp/80; Java Debug Wire Protocol handshake sent to the HTTP port (JDWP remote code execution probe): "JDWP-Handshake" @ 2026-09-07T07:49:41Z [proxy]
show less
Port Scan
🇦🇹
nomzamo
2026-09-07 07:52:06
(6 hours ago)
Fail2Ban reported: nginx-bad-request
Brute-Force
🇩🇪
MaxMeier
2026-09-07 07:49:35
(6 hours ago)
207.175.145.34 - - [07/Sep/2026:09:47:22 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT ...
show more
207.175.145.34 - - [07/Sep/2026:09:47:22 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
207.175.145.34 - - [07/Sep/2026:09:47:22 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x86\xAE\xEF \xB1;\x06\xAD\x12\x11Dk>\xB1\x08\xF6\xF6\x82R\xCD\xCF\x9CLFt\xD7\xCA\xCA\xBA\xCC\xE77 \x05\xD5\xF8\x1A\x09\xBAg\x86%\x10\xB2Zp\x0B\x14\x98*4e\x89\x19\xCB:_\x08b\xBA\x91\xF4\xD2" 400 150 "-" "-"
207.175.145.34 - - [07/Sep/2026:09:47:22 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
207.175.145.34 - - [07/Sep/2026:09:47:27 +0200] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 150 "-" "-"
207.175.145.34 - - [07/Sep/2026:09:47:27 +0200] "k\xC6v\xD9\xAE\x14\xE
...
show less
Bad Web Bot
Web App Attack
🇺🇸
withfallback.com
2026-09-07 07:22:15
(7 hours ago)
Attempt to connect to Java debugger (JDWP)
Port Scan
Anonymous
2026-09-07 06:07:02
(8 hours ago)
207.175.145.34 - - [07/Sep/2026:08:07:01 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT ...
show more
207.175.145.34 - - [07/Sep/2026:08:07:01 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
207.175.145.34 - - [07/Sep/2026:08:07:01 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\xBB=\xB0\x81\xCCJ \xFF%\x15\x06?O\x0Ck\xF7$\xB4\xB0\xD6\xB5.\xDC+\x1Dx\xD0>\x06f\xBF\xF9 \x04\xD5\xC5\x15\x09\x8C\x0C\xCA/\x99\xA1x\xAE\xA6\x1F#\x89\x08\xAFw&y\xC9\x0C\x9C\xF1\x07\xCE\xE7\xD4`\x96\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 150 "-" "-"
...
show less
Bad Web Bot
Web App Attack
🇷🇺
mysh38
2026-09-07 05:19:56
(9 hours ago)
fail2ban: nginx-bots jail ban
Web App Attack
🇺🇸
gu-alvareza
2026-09-07 05:06:49
(9 hours ago)
Java.Debug.Wire.Protocol.Insecure.Configuration
Hacking
🇩🇪
0x44
2026-09-07 04:58:33
(9 hours ago)
Abusive host detected - Web probing for vulnerabilities
Web App Attack
Hacking
🇫🇷
Thaliruth
2026-09-07 04:47:34
(9 hours ago)
[07/Sep/2026:06:47:33.481410 +0200] ap5B5fLLgiIcIW1Fc5zmMAAAAAk 207.175.145.34 41442 127.0.0.1 7080
...
show more
[07/Sep/2026:06:47:33.481410 +0200] ap5B5fLLgiIcIW1Fc5zmMAAAAAk 207.175.145.34 41442 127.0.0.1 7080
...
show less
Hacking
🇹🇷
pashait
2026-09-07 04:45:13
(9 hours ago)
Auto-blocked by Seczar SecureOps — IPS Web Attack Signature (1 events in 5min) at 2026-09-07 04:45
Web App Attack
Bad Web Bot
🇨🇦
lakered
2026-09-07 04:40:46
(9 hours ago)
Detectors: [nginx_monitor, NGINX] | Reasons: Nginx: Default server trap hit | Invalid HTTP protocol ...
show more
Detectors: [nginx_monitor, NGINX] | Reasons: Nginx: Default server trap hit | Invalid HTTP protocol or SSTP scan attempt detected on sinkhole | Evidence: High-Criminality-Signature (p0f:*:64:0:*:mss*30,7:mss,sok,ts,nop,ws:df,id+:0 - Ratio:0.98), OS-Signature-Mismatch (UA:Windows/p0f:Linux) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36 | TCP Fingerprint: Linux (Legacy/Embedded) (Link:generic tunnel or VPN, Uptime:5492m)
show less
Port Scan
Exploited Host
🇩🇪
dpsbs
2026-09-07 02:40:17
(11 hours ago)
multiple ips intrustions detected
Hacking
🇦🇺
gregoo23
2026-09-07 02:39:39
(11 hours ago)
207.175.145.34 - - [07/Sep/2026:12:39:36 +1000] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT ...
show more
207.175.145.34 - - [07/Sep/2026:12:39:36 +1000] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
207.175.145.34 - - [07/Sep/2026:12:39:37 +1000] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x08=mHJ\xD1f]7\x12\x8BB\x9E\xEB\xFA\x94DJF?V\xFF\x9DD\xDC\x22d\xA2\xA2\xC17X \x87\xE2\x1A\xF5;\x9D\x10\xAA\xB2>\xE4!k\xF1\xCD\xCD\xD6\x91\x90\xAD\x12\xD6iW\x1D\x06B\xB6\xDE-\xE8e\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 154 "-" "-"
207.175.145.34 - - [07/Sep/2026:12:39:38 +1000] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack