๐ช๐ธ
Gem
2026-09-18 22:11:56
(4 days ago)
Unauthorized web scan.
Web App Attack
๐ซ๐ท
Bensay
2026-09-18 21:32:09
(4 days ago)
Repeated suspicious HTTP service scan against a blocked web sinkhole; threshold=3 events/10m; result ...
show more
Repeated suspicious HTTP service scan against a blocked web sinkhole; threshold=3 events/10m; result=blocked; user-agent=unknown
show less
Port Scan
๐ง๐ท
Pingtoping
2026-09-16 15:23:55
(6 days ago)
Nmap.Script.Scanner
Port Scan
Hacking
Exploited Host
Web App Attack
๐ฉ๐ช
patrisei
2026-09-16 13:09:35
(6 days ago)
You are now banned for 10 years by Schiffdorf-West Patrol. Trigger: crowdsecurity/http-probing
Port Scan
Web App Attack
๐ณ๐ด
noteng.no
2026-09-16 12:56:03
(6 days ago)
34.78.241.121 - - [16/Sep/2026:14:55:57 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x92\x84 ...
show more
34.78.241.121 - - [16/Sep/2026:14:55:57 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x92\x844?\xF1IM\xDD]Gsi\x9D2\xD9\x08\x04\xE9\xA4Gu\x965\xF0f\x10." 400 150 "-" "-"
34.78.241.121 - - [16/Sep/2026:14:56:02 +0200] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 150 "-" "-"
34.78.241.121 - - [16/Sep/2026:14:56:02 +0200] "\xEC\xF9s\xAAp\xBEv\xD5|\x16h\x1C!\xCA\x12\x0E\x99\xCD|\x1E\xA8?l\xE0NRnlD\x11\xF2\x95\x88Kq\xF43\xC5RFM\xB6>\xC3\xBD-<I\xCA\x04!B\x9B,\xB5\x98\xD4)\xCC\xA0\xB0\xCE\xA8G" 400 150 "-" "-"
...
show less
Hacking
Web App Attack
๐บ๐ธ
crooze.net
2026-09-16 12:31:48
(6 days ago)
34.78.241.121 - - [16/Sep/2026:08:31:47 -0400] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x10XfhW ...
show more
34.78.241.121 - - [16/Sep/2026:08:31:47 -0400] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x10XfhW*+$\xCCj\x87\xA3\xE3\xB0\xC5eq\xD2 We\x9CE\xB1*\xAA\x8A4\xA9\xF5H\xE9 \xA4\x89\xBB{\xA7\xED\x81\x9B\x1D4\xC2!D\xB3_P\xAD\xAC\xE0\xB2\xCFj9\x03\xEEp\x03\x13\xEF\xB87\xF3\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 150 "-" "-"
...
show less
Hacking
Web App Attack
๐บ๐ธ
knock
2026-09-16 12:21:16
(6 days ago)
Knock-Knock honeypot brute-force: HTTP (1 total hits)
Web App Attack
๐บ๐ธ
azminawwar
2026-09-16 12:00:05
(6 days ago)
[34.78.241.121] triggered by honeypot on port [80], Timestamp [2026-09-16T12:00:04Z]METHOD=GET PATH= ...
show more
[34.78.241.121] triggered by honeypot on port [80], Timestamp [2026-09-16T12:00:04Z]METHOD=GET PATH=/ HTTP=HTTP/1.1 UA="Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko)
show less
Port Scan
Hacking
๐ฉ๐ช
MaxMeier
2026-09-16 11:44:25
(6 days ago)
34.78.241.121 - - [16/Sep/2026:13:42:12 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 1 ...
show more
34.78.241.121 - - [16/Sep/2026:13:42:12 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
34.78.241.121 - - [16/Sep/2026:13:42:12 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\xD7}b\x184S\x5C\xBA\xD1\x1F\xA0;\xDF\xF2]\xB5\x17iu#\xA91q{\xBE\xA5$\x0C\x8E\xBC\xD3H \xE1\xA1y\xD0\x8Ce\x11<>\x84\x15o\x10\x5C'}\xA5\x99" 400 150 "-" "-"
34.78.241.121 - - [16/Sep/2026:13:42:12 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
34.78.241.121 - - [16/Sep/2026:13:42:14 +0200] "\xF1\xDB\xE9\xC8\xDCz\xF5\xD6\xB0\x0B\x893\xA0\xBC=\xD9\xB1\xD0'd\xD1q\x1Ej7\xB92\x88\x1Ew;x\x1D\x0EQ_.\x96\x8F\x81^\xE3~\x1B\x98\x7F\xEB`B\xD2\xE3\xDD\xA9\xE2l\xA8X\xCB\xF66\xFF\xE5\x0E\xE7" 400 150 "-" "-"
34.78.241.121 - - [16/Sep/2026:13:42:14 +0200] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x0
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
joharikop
2026-09-16 11:25:19
(6 days ago)
Malformed HTTP request or known bad user agent detected by fail2ban on nginx reverse proxy
Bad Web Bot
๐บ๐ธ
Starburst SysOp Team
2026-09-16 11:23:32
(6 days ago)
Host header is a numeric IP address. Pattern match "(?:^( (920350-iad5-2)
Hacking
Bad Web Bot
Anonymous
2026-09-16 11:00:57
(6 days ago)
34.78.241.121 - - [16/Sep/2026:13:00:57 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 1 ...
show more
34.78.241.121 - - [16/Sep/2026:13:00:57 +0200] "GET / HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
34.78.241.121 - - [16/Sep/2026:13:00:57 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\x8BR\x85+\x00\xE9\xC9'\x959\xCD-o\x09\xE1\x953\xF2\xA2\xCA\x86\xAF\x19!L\xF6\x9E\xCF\x1D\xE0\xD7S U\x80\x9B\xB9x\xF5.(\x0C>'g16\xDB\xD2f\x96I\x82\x8CmX\xB3\xCF\xDDK\xB9\x91}W\xA2\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 150 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
aks4226
2026-09-16 10:54:03
(6 days ago)
Attacking common web applications. (n01)
Web App Attack
๐ญ๐ฐ
CyberFox
2026-09-16 10:45:22
(6 days ago)
80/tcp (1 or more attempts)
Port Scan
Anonymous
2026-09-16 10:25:41
(6 days ago)
Web application attack detected.
Web App Attack