🇪🇸
Gem
2026-09-11 22:10:53
(15 hours ago)
Unauthorized web scan.
Web App Attack
🇲🇽
octageeks.com
2026-09-10 04:08:34
(2 days ago)
Wordpress malicious attack:[octamissingdomain]
Web App Attack
🇩🇪
ManagedStack
2026-09-09 07:45:02
(3 days ago)
Probing access to unauthorized locations
Hacking
Exploited Host
Web App Attack
🇩🇰
RhQM
2026-09-09 07:26:36
(3 days ago)
Bad Web Bot
Exploited Host
Web App Attack
🇹🇼
tyetriiix
2026-09-09 07:12:49
(3 days ago)
Wazuh Alert Evidence: 34.62.72.226 - - [09/Sep/2026:07:12:46 +0000] "OPTIONS / HTTP/1.1" 405 150 "-" ...
show more
Wazuh Alert Evidence: 34.62.72.226 - - [09/Sep/2026:07:12:46 +0000] "OPTIONS / HTTP/1.1" 405 150 "-" "Mozilla/5.0 (compatible)" "-" Origin: "-" CORS_Header: "-" Sent_allow_origin: "-"
show less
Web App Attack
🇧🇷
mubusys.com
2026-09-09 07:04:47
(3 days ago)
34.62.72.226 - - [09/Sep/2026:04:04:41 -0300] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03FIV*\xCE3 ...
show more
34.62.72.226 - - [09/Sep/2026:04:04:41 -0300] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03FIV*\xCE3$Ji\x11\xB4\x00\xDC\xFA\x1E\xDF\x03\x8D\x18\xF7\xFD\xBEgE\xC4+7\xD0\xF9\xBD\xC1V 5\xF6~b_\xDEC\x95b\xF2,\xEAU\x8CL3\xEC$\x17\xF6\x9Ej\x9B\x99\xC2\x08]_[\x1E;U\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 157 "-" "-" "-"
34.62.72.226 - - [09/Sep/2026:04:04:46 -0300] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 157 "-" "-" "-"
show less
Hacking
Brute-Force
🇺🇸
KayCee
2026-09-09 06:56:49
(3 days ago)
34.62.72.226 - - [09/Sep/2026:02:55:59 -0400] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x14\x8Cg ...
show more
34.62.72.226 - - [09/Sep/2026:02:55:59 -0400] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x14\x8CgGl\x8C_eb\xA5PX\xDE\xEB\x10@`\x8F\xC7-nB1\x7F\xEFx\x03\x0B\xD0\xAD\xE9I \x10\x89?W\xB4\x17\x92\xA8\xD8\xA0>\xC3b\x09h\x89>l\xB0I}\x14\xB4\x8E\xF7\xD2\xCFy\x99\xC5\xAA\x1E\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 150 "-" "-" "-"
34.62.72.226 - - [09/Sep/2026:02:56:04 -0400] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 150 "-" "-" "-"
34.62.72.226 - - [09/Sep/2026:02:56:05 -0400] "\x0E;\x95\xD8b,\x17\xC8\xD4y\xB4\xAC\xB8\x946!3h+\xF4\xC6\xEE\x8D\xCC\x02\x8E\xF6i\xF7v\x94\x84f]\x864s\xE1U\xCC:\xFDw\xC4\xFD\xD6\x9BdJ\x14\x0C\xEA\x14\xB0Z\x08f\xD2\xA7D\x9F\xB7g]" 400 150 "-" "-" "-"
34.62.72.226 - - [09/Sep/2026:02:56:23 -0400] "\x00\x1E\xC3\xEC\x01\x00\x00\x01\x00\x00\x00\x00\x00\x00\x07version\x04bind\x00\x00\x10\x00\x03"
...
show less
Web App Attack
🇯🇵
VXG-NET
2026-09-09 06:34:51
(3 days ago)
port=80, indicator_type=hacktool
Hacking
🇸🇬
WMK965
2026-09-09 06:15:49
(3 days ago)
34.62.72.226 - - [09/Sep/2026:14:15:39 +0800] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\xEF\xD9F ...
show more
34.62.72.226 - - [09/Sep/2026:14:15:39 +0800] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\xEF\xD9F\x0F\x8F)J\xDE\xEC*C\x04\x95Z\x96\xD6b\xD7\xBC\xD2`\xC1\xE1W\xA7z\xF6O\xBB\x11n\xFC \xAA\x13\xF5\xB2#|\xD1V\xC2\xE6\xABe\xF8k\x0E\xCE6\x9E l.\xAFFF=\xD3\x9C\xF8s\xFB\xA4-\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 154 "-" "-" "-"
34.62.72.226 - - [09/Sep/2026:14:15:46 +0800] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 154 "-" "-" "-"
34.62.72.226 - - [09/Sep/2026:14:15:49 +0800] "\xE7\x1A\xA5\xF0\x9A\x10\xB2\x03\x93\xC2\xECJ\xEA\xE6S\xCA<\xAA\xED\x1C)\x87\xFDQ\xB0D\xA0\x91\xB30\xB0\x92\x09Qq\xA2\x80f\xA2~_~\xC2}\x1FtX\x9B\xC7\xEA-Z\x9DV\xC3\xA3\xC4\x9D\xE9b\xA9\xDC)\xE0" 400 154 "-" "-" "-"
show less
Port Scan
Web App Attack
Anonymous
2026-09-09 05:51:41
(3 days ago)
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy ...
show more
Probing for known exploit paths (.env, .git, wp-admin, shell files, etc.). Single-strike ban policy — zero tolerance for exploit scanning. Banned Sep 9, 05:51 UTC. Origin: Belgium, Brussels.
show less
Hacking
Bad Web Bot
Web App Attack
🇩🇪
Progetto1
2026-09-09 05:17:02
(3 days ago)
Detected via HAProxyScanner at 2026-09-09 05:17:01 UTC on destination port WEB (80/443). Repeated sc ...
show more
Detected via HAProxyScanner at 2026-09-09 05:17:01 UTC on destination port WEB (80/443). Repeated scan / connection.
show less
Port Scan
Hacking
Brute-Force
🇹🇷
pashait
2026-09-09 05:08:48
(3 days ago)
Auto-blocked by Seczar SecureOps — IPS Web Attack Signature (1 events in 5min) at 2026-09-09 05:08
Web App Attack
Bad Web Bot
🇫🇮
pixiekat
2026-09-09 04:58:19
(3 days ago)
[Wed Sep 09 05:58:18.113051 2026] [authz_core:error] [pid 2421195:tid 2421299] [client 34.62.72.226: ...
show more
[Wed Sep 09 05:58:18.113051 2026] [authz_core:error] [pid 2421195:tid 2421299] [client 34.62.72.226:25638] AH01630: client denied by server configuration: /var/www/html/
[Wed Sep 09 05:58:18.262303 2026] [authz_core:error] [pid 2421196:tid 2421312] [client 34.62.72.226:25640] AH01630: client denied by server configuration: /var/www/html/
[Wed Sep 09 05:58:18.413522 2026] [authz_core:error] [pid 2421195:tid 2421266] [client 34.62.72.226:25644] AH01630: client denied by server configuration: /var/www/html/
[Wed Sep 09 05:58:18.565211 2026] [authz_core:error] [pid 2421196:tid 2421309] [client 34.62.72.226:25650] AH01630: client denied by server configuration: /var/www/html/
[Wed Sep 09 05:58:18.769479 2026] [authz_core:error] [pid 2421195:tid 2421269] [client 34.62.72.226:25652] AH01630: client denied by server configuration: /var/www/html/
...
show less
Brute-Force
🇩🇪
Tamsy
2026-09-09 04:47:43
(3 days ago)
HTTPD - 4xx scan
Web App Attack
🇮🇹
Progetto1
2026-09-09 04:45:05
(3 days ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack