๐บ๐ธ
LSPCCU
2026-10-05 13:18:41
(2 days ago)
TSEC Honeypot Network report. Threat score: 69/100. Categories: Port Scan, Hacking, Brute-Force, Web ...
show more
TSEC Honeypot Network report. Threat score: 69/100. Categories: Port Scan, Hacking, Brute-Force, Web App Attack, SSH, IoT Targeted. Honeypot: h0neytr4p. Context: 34.156.50.192 classified as botnet node participating in coordinated attack campaigns (high confidence).
show less
Port Scan
Hacking
Brute-Force
Web App Attack
SSH
IoT Targeted
๐ธ๐ช
Per-Erik Runebert
2026-10-02 08:39:10
(5 days ago)
Excessive unauthorized requests
Hacking
๐ท๐บ
weke
2026-10-01 12:10:32
(6 days ago)
Low-interaction honeypot observation; observed_at=2026-10-01T12:10:32.884Z; window_ms=10002; connect ...
show more
Low-interaction honeypot observation; observed_at=2026-10-01T12:10:32.884Z; window_ms=10002; connections=2; traffic=51B-in/0B-out; destinations=443/rtsp:1c,51B-in,0B-out | 443/tcp:1c,0B-in,0B-out; protocols=rtsp,tcp; categories=23; http=OPTIONS rtsp://example.com
show less
IoT Targeted
๐ฆ๐น
vikal
2026-10-01 12:03:17
(6 days ago)
34.156.50.192 - - [01/Oct/2026:14:02:57 +0200] "07\xA0\x03\x02\x01`\xA100.0,\xA0*\x04(NTLMSSP\x00\x0 ...
show more
34.156.50.192 - - [01/Oct/2026:14:02:57 +0200] "07\xA0\x03\x02\x01`\xA100.0,\xA0*\x04(NTLMSSP\x00\x01\x00\x00\x00\xF7\xBA\xDB\xE2\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" 400 150 "-" "-"
34.156.50.192 - - [01/Oct/2026:14:03:06 +0200] "0:\x02\x04Sc\x90\x84`2\x02\x01\x03\x04\x17cn=ujyzhgemlylnzhuwxdnq\x80\x14ujyzhgemlylnzhuwxdnq" 400 150 "-" "-"
34.156.50.192 - - [01/Oct/2026:14:03:16 +0200] "\x00\x00\x00C\x00\x12\x00\x00\x1E3\xF4\x81\x00\x1Fconsumer-Offset Explorer 2.2-18\x00\x12apache-kafka-java\x062.4.0\x00" 400 150 "-" "-"
34.156.50.192 - - [01/Oct/2026:14:03:16 +0200] "\x00\x00\x00#\x00\x03\x00\x00\x1E3\xF4\x81\x00" 400 150 "-" "-"
34.156.50.192 - - [01/Oct/2026:14:03:16 +0200] "*1" 400 150 "-" "-"
...
show less
Brute-Force
SSH
Anonymous
2026-10-01 11:37:29
(6 days ago)
Http Port:443 (http_status:403) - Agent:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 ...
show more
Http Port:443 (http_status:403) - Agent:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36
show less
Web App Attack
๐บ๐ธ
brantknudson.org
2026-10-01 10:41:17
(6 days ago)
Incorrect Host header
Web App Attack
Brute-Force
๐ฎ๐ณ
Starburst SysOp Team
2026-10-01 10:36:07
(6 days ago)
Host header is a numeric IP address. Pattern match "(?:^( (920350-bom2-2)
Hacking
Bad Web Bot
๐จ๐ฆ
smithoo4
2026-10-01 10:34:33
(6 days ago)
34.156.50.192 - - [01/Oct/2026:06:34:31 -0400] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 1 ...
show more
34.156.50.192 - - [01/Oct/2026:06:34:31 -0400] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
34.156.50.192 - - [01/Oct/2026:06:34:32 -0400] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
...
show less
Port Scan
Bad Web Bot
๐ซ๐ท
abuseipdb_reporter
2026-10-01 10:22:58
(6 days ago)
34.156.50.192 - - [01/Oct/2026:12:22:38 +0200] "07\xA0\x03\x02\x01`\xA100.0,\xA0*\x04(NTLMSSP\x00\x0 ...
show more
34.156.50.192 - - [01/Oct/2026:12:22:38 +0200] "07\xA0\x03\x02\x01`\xA100.0,\xA0*\x04(NTLMSSP\x00\x01\x00\x00\x00\xF7\xBA\xDB\xE2\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" 400 150 "-" "-"
34.156.50.192 - - [01/Oct/2026:12:22:48 +0200] "0:\x02\x04}x\xA3\x89`2\x02\x01\x03\x04\x17cn=iofccbjqqmdogpupisnx\x80\x14iofccbjqqmdogpupisnx" 400 150 "-" "-"
34.156.50.192 - - [01/Oct/2026:12:22:57 +0200] "\x00\x00\x00C\x00\x12\x00\x00\x1E3\xF4\x81\x00\x1Fconsumer-Offset Explorer 2.2-18\x00\x12apache-kafka-java\x062.4.0\x00" 400 150 "-" "-"
...
show less
Web App Attack
๐บ๐ธ
johnkarlhill
2026-10-01 09:35:18
(6 days ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
๐บ๐ธ
billfor
2026-10-01 08:47:26
(6 days ago)
34.156.50.192 - - [01/Oct/2026:04:47:23 -0400] "0:x02x04x07GxBEx1B`2x02x01x03x04x17cn=lxswybqumolrvq ...
show more
34.156.50.192 - - [01/Oct/2026:04:47:23 -0400] "0:x02x04x07GxBEx1B`2x02x01x03x04x17cn=lxswybqumolrvqfzidpnx80x14lxswybqumolrvqfzidpn" 400 0 "-" "-"
show less
Web App Attack
๐บ๐ธ
HamSammich
2026-10-01 08:26:21
(6 days ago)
Automated sensor: 1 HTTPS connection/probe attempts over the last 24h (latest 2026-10-01T08:26Z).
Brute-Force
Web App Attack
๐ธ๐ฌ
WMK965
2026-10-01 08:09:08
(6 days ago)
34.156.50.192 - - [01/Oct/2026:16:08:59 +0800] "07\xA0\x03\x02\x01`\xA100.0,\xA0*\x04(NTLMSSP\x00\x0 ...
show more
34.156.50.192 - - [01/Oct/2026:16:08:59 +0800] "07\xA0\x03\x02\x01`\xA100.0,\xA0*\x04(NTLMSSP\x00\x01\x00\x00\x00\xF7\xBA\xDB\xE2\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00" 400 154 "-" "-" "-"
34.156.50.192 - - [01/Oct/2026:16:09:05 +0800] "0:\x02\x04\x0FM\x85e`2\x02\x01\x03\x04\x17cn=veyrxgkoetjlcwjzkkqq\x80\x14veyrxgkoetjlcwjzkkqq" 400 154 "-" "-" "-"
34.156.50.192 - - [01/Oct/2026:16:09:07 +0800] "\x00\x00\x00#\x00\x03\x00\x00\x1E3\xF4\x81\x00" 400 154 "-" "-" "-"
show less
Port Scan
Web App Attack
๐ฉ๐ช
bescared
2026-10-01 07:47:15
(6 days ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
Allolatr
2026-10-01 07:06:33
(6 days ago)
Oct 1 09:06:27 [redacted] j443: ::ffff:34.156.50.192 "GET / HTTP/1.1" 400 654 "-" "Mozilla/5.0 (Wind ...
show more
Oct 1 09:06:27 [redacted] j443: ::ffff:34.156.50.192 "GET / HTTP/1.1" 400 654 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36" Oct 1 09:06:32 [redacted] j443: ::ffff:34.156.50.192 ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 154 "-" "-"
show less
Bad Web Bot
Web App Attack