๐จ๐ฆ
lakered
2026-07-29 08:30:21
(1 hour ago)
Detectors: [NGINX] | Reasons: Nginx: Default server trap hit | Evidence: High-Criminality-Signature ...
show more
Detectors: [NGINX] | Reasons: Nginx: Default server trap hit | Evidence: High-Criminality-Signature (p0f:*:64:0:*:mss*30,7:mss,sok,ts,nop,ws:df,id+:0 - Ratio:0.98), OS-Signature-Mismatch (UA:Windows/p0f:Linux) | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36 | TCP Fingerprint: Linux (Legacy/Embedded) (Link:generic tunnel or VPN, Uptime:41413m)
show less
Port Scan
Exploited Host
Anonymous
2026-07-29 07:05:37
(3 hours ago)
34.79.124.116 - - [29/Jul/2026:09:04:47 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x036\xE1\xA ...
show more
34.79.124.116 - - [29/Jul/2026:09:04:47 +0200] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x036\xE1\xAC]#\xA1\x9Cc\xCA\x7F\x5Co\x184E\x9E\xE0'Q" 400 150 "-" "-"
34.79.124.116 - - [29/Jul/2026:09:04:52 +0200] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 150 "-" "-"
34.79.124.116 - - [29/Jul/2026:09:04:52 +0200] "\x8Bw\x91j\x9B\xB1\xDD7\xD4\x9C\xA8t\x97\x80" 400 150 "-" "-"
34.79.124.116 - - [29/Jul/2026:09:05:30 +0200] "\x00\x1ESq\x01\x00\x00\x01\x00\x00\x00\x00\x00\x00\x07version\x04bind\x00\x00\x10\x00\x03" 400 150 "-" "-"
34.79.124.116 - - [29/Jul/2026:09:05:36 +0200] "\x03\x00\x00\x13\x0E\xE0\x00\x00\x00\x00\x00\x01\x00\x08\x00\x0B\x00\x00\x00" 400 150 "-" "-"
...
show less
Web App Attack
๐ณ๐ด
Bots.go.to.hell
2026-07-29 06:20:04
(3 hours ago)
This IP was detected by CrowdSec triggering custom/ip-honeypot
Web App Attack
Bad Web Bot
๐ฉ๐ช
femboy.cat
2026-07-29 05:38:42
(4 hours ago)
Port scan to tcp/80 from 34.79.124.116
Brute-Force
๐ต๐ฑ
webadmin
2026-07-29 05:23:15
(4 hours ago)
2026-07-29T07:23:11.465471+02:00 tytan csmpro-api[3056]: [error] client: 34.79.124.116 server: 213.2 ...
show more
2026-07-29T07:23:11.465471+02:00 tytan csmpro-api[3056]: [error] client: 34.79.124.116 server: 213.25.105.153, request: "GET", url: http://213.25.105.153/ [404]: Not Found
2026-07-29T07:23:11.508247+02:00 tytan csmpro-api[3056]: [error] client: 34.79.124.116 server: 213.25.105.153, request: "OPTIONS", url: http://213.25.105.153/ [404]: Not Found
2026-07-29T07:23:11.579295+02:00 tytan csmpro-api[3056]: [error] client: 34.79.124.116 server: 213.25.105.153, request: "GET", url: http://213.25.105.153/favicon.ico [404]: Not Found
2026-07-29T07:23:14.763302+02:00 tytan csmpro-api[3056]: [error] client: 34.79.124.116 server: 213.25.105.153, request: "CKSA", url: http://213.25.105.153/ [404]: Not Found
show less
Web App Attack
๐บ๐ธ
legionMCCXV
2026-07-29 05:15:17
(5 hours ago)
Non-HTTP protocol data (e.g. MQTT/TLS handshake bytes) sent to HTTP(S) port.
Port Scan
Hacking
๐บ๐ธ
HamSammich
2026-07-29 05:09:01
(5 hours ago)
Automated sensor: 1 HTTP connection/probe attempts over the last 24h (latest 2026-07-29T05:09Z).
Brute-Force
Web App Attack
๐บ๐ธ
donarev419
2026-07-29 04:52:30
(5 hours ago)
Connection to port 80 with data transfer.
Data preview: GET / HTTP/1.1
Host: 167.253.66.144:80
Use ...
show more
Connection to port 80 with data transfer.
Data preview: GET / HTTP/1.1
Host: 167.253.66.144:80
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) Apple
show less
Port Scan
Hacking
๐ฎ๐ฉ
PENJAGA.AUM
2026-07-29 04:35:01
(5 hours ago)
34.79.124.116 - Attack: Possible XSS attack, js event handler
Web App Attack
SQL Injection
Spoofing
๐บ๐ธ
johnkarlhill
2026-07-29 04:30:03
(5 hours ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
๐บ๐ธ
conrad10781
2026-07-29 04:27:48
(5 hours ago)
nginx-direct-ip
Port Scan
๐ณ๐ฑ
ItsJustStan
2026-07-29 04:01:34
(6 hours ago)
Multi-protocol port scanner sending binary payloads to HTTP port
Port Scan
๐ณ๐ฑ
taivas.nl
2026-07-29 03:30:05
(6 hours ago)
web_app_attack
Email Spam
๐ธ๐ฌ
WMK965
2026-07-29 03:29:29
(6 hours ago)
34.79.124.116 - - [29/Jul/2026:11:29:22 +0800] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\xDE\xB6 ...
show more
34.79.124.116 - - [29/Jul/2026:11:29:22 +0800] "\x16\x03\x01\x05\xC4\x01\x00\x05\xC0\x03\x03\xDE\xB6Y\xBAU\x06X~\xBCM2\x141dJ@O[\xA1\x98M/\x82\x5C8\xD2lx\xBA\xEC\x04\xF7 \x93\x8Ej\xDBp\x13\xADi\xBF\x18%\x22\xB7\x96\xC0\xDFpw6\x1CY_\xA2E\xBEC\xFC\xA8]\xFAn\xFE\x002\xC0+\xC0/\xC0,\xC00\xCC\xA9\xCC\xA8\xC0\x09\xC0\x13\xC0" 400 154 "-" "-" "-"
34.79.124.116 - - [29/Jul/2026:11:29:27 +0800] ";\x00\x00\x00\x01\x00\x00\x00\x00\x00\x00\x00\xD4\x07\x00\x00\x00\x00\x00\x00admin.$cmd\x00\x00\x00\x00\x00\xFF\xFF\xFF\xFF\x14\x00\x00\x00\x01hello\x00\x00\x00\x00\x00\x00\x00\xF0?\x00" 400 154 "-" "-" "-"
34.79.124.116 - - [29/Jul/2026:11:29:28 +0800] "MiZ~,\x06\xA3\x95!\xF2\x89\xAC\xC3\xED\x15+$\xCA\xFE,\xD4=I\xF5\x16\x82\xC1N\x08\xF7\x17\x0B\xD2s\xE7\xACQ\xC17@4`b\xF1\xE1\xBE\xC0\xBB\xD4\xD9:\xB5\xE8\xB3\xE6\xE5V\x91x\xB3\xCDO\x0F0" 400 154 "-" "-" "-"
show less
Port Scan
Web App Attack
๐บ๐ธ
donarev419
2026-07-29 02:46:05
(7 hours ago)
Connection to port 80 with data transfer.
Data preview: ๏ฟฝ
Port Scan
Hacking